dynamo/deny.toml

67 lines
1.7 KiB
TOML

# SPDX-FileCopyrightText: Copyright (c) 2024-2026 NVIDIA CORPORATION & AFFILIATES. All rights reserved.
# SPDX-License-Identifier: Apache-2.0
#
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
# cargo-deny plugin for linting dependencies
# https://github.com/EmbarkStudios/cargo-deny/blob/main/deny.template.toml
[licenses]
confidence-threshold = 0.93
allow = [
"MIT-0",
"MIT",
"Apache-2.0",
"Apache-2.0 WITH LLVM-exception",
"ISC",
"0BSD",
"BSD-2-Clause",
"BSD-3-Clause",
"OpenSSL",
"Unicode-3.0",
"BSL-1.0",
"MPL-2.0",
"CDLA-Permissive-2.0",
"Zlib",
"NCSA",
"LGPL-3.0",
"LGPL-3.0-only",
"CC0-1.0",
"Unicode-DFS-2016",
"WTFPL"
]
# TODO exceptions
# MIT: https://github.com/guidance-ai/llguidance
# "llguidance",
# MIT: https://github.com/guidance-ai/llguidance/toktrie
# "toktrie",
# MIT: https://github.com/guidance-ai/llguidance/toktrie_hf_tokenizers
# "toktrie_hf_tokenizers",
[[licenses.clarify]]
name = "ring"
expression = "MIT AND ISC AND OpenSSL"
license-files = [
{ path = "LICENSE", hash = 0xbd0eed23 }
]
[bans]
deny = [
# Ensure we don't depend on openssl
{ name = "native-tls" },
{ name = "openssl-sys" },
]