Exemple
rustls-pki-types 1.15.1
Échantillon vérifié pour cargo rustls-pki-types 1.15.1. Le contrat s'est exécuté sur rust 1 · linux alpine/x64 · docker et a réussi.
sha256:d364adc1044f9317b370c34acd2e05ea4310f7f3d088f3095b64d9ab9fc9b839
Ce réseau offre une seule chose : un échantillon qui compile. Il l'a exécuté dans un bac à sable et conservé le reçu signé. Il ne note rien et ne garantit rien : si le même code compile chez vous, il ne l'a pas mesuré.
Combien de clés de signature distinctes ont déposé un reçu de contrat réussi. Une seule, c'est l'auteur ; plus d'une signifie que quelqu'un d'autre l'a compilé aussi. Une clé est auto-générée sans identité enregistrée derrière, donc on compte des clés, pas des personnes.
MIT-0
Preuves d'exécution
L'environnement déclaré et les exécutions signées sont séparés, pour que vous voyiez exactement ce que cet échantillon a exécuté et où.
- Base de preuve
- Contrat signé réussi
- Reçus de vérification
- 1
- Clés de signature qui l’ont compilé
- 1
Environnement déclaré
linux x64 cargo
Environnements des exécutions de vérification
| Environnement | Contrat | Étapes | Exécution |
|---|---|---|---|
| rust 1 · linux alpine/x64 · docker ed25519:c1973797be207ac4 | PASS | compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS CONTAINER_RUN · cargo@1rust:1-alpine@sha256:a10e64dd139b… |
2026-09-19 |
Cas
HOW- Objectif
- verify pkg:cargo/rustls-pki-types@1.15.1
- Paquets
- Créé
- 2026-09-18T09:35:45Z
Contrat
- ServerName::try_from("example.com") returns Ok(ServerName::DnsName)
- ServerName::try_from("") returns Err(InvalidDnsNameError)
- ServerName::try_from("127.0.0.1") returns Ok(ServerName::IpAddress)
- CertificateDer::from(bytes) wraps DER-encoded certificate bytes
- PrivateKeyDer::Pkcs8(PrivatePkcs8KeyDer::from(bytes)) wraps PKCS#8 private key
- UnixTime::since_unix_epoch(duration) creates UnixTime instance
Fichiers
- Cargo.lock
- Cargo.toml
- PROMPT.md
- csx.json
- spec.json
- src/main.rs
Code source
# This file is automatically @generated by Cargo.
# It is not intended for manual editing.
version = 4
[[package]]
name = "rustls-pki-types"
version = "1.15.1"
source = "registry+https://github.com/rust-lang/crates.io-index"
checksum = "2f4925028c7eb5d1fcdaf196971378ed9d2c1c4efc7dc5d011256f76c99c0a96"
dependencies = [
"zeroize",
]
[[package]]
name = "sample-rustls-pki-types"
version = "0.1.0"
dependencies = [
"rustls-pki-types",
]
[[package]]
name = "zeroize"
version = "1.9.0"
source = "registry+https://github.com/rust-lang/crates.io-index"
checksum = "e13c156562582aa81c60cb29407084cdb54c4164760106ab78e6c5b0858cf64e"
[package]
name = "sample-rustls-pki-types"
version = "0.1.0"
edition = "2021"
[dependencies]
rustls-pki-types = "=1.15.1"
Clean-room public code sample — generation instructions
Write a brand-new, minimal, self-contained code sample in this clean-room directory.
Do not copy, paraphrase, or reference any existing project source. Work only from this spec.
A csx.json manifest scaffold already exists. Do not recreate it from memory. Preserve its case.goal, packages and symbols; fill its empty case.contract with exact assertions and correct its environment, commands and verifierAdapter for the files you generate.
Goal: verify pkg:cargo/rustls-pki-types@1.15.1
Kind: HOW
Use EXACTLY these public packages and versions:
- pkg:cargo/rustls-pki-types@1.15.1
Rules:
- One focused purpose; the smallest project that proves the goal.
- Include a contract test (test/contract.*) that runs OFFLINE and exits 0 exactly when the goal behavior works.
- Pin every dependency with a lockfile so resolution is reproducible.
- No secrets, credentials, or tokens. No real URLs (only example.com or localhost). No absolute paths.
- No personal names, emails, company names, or project identifiers of any kind.
- No binaries and no generated output (node_modules, dist, target, venv, .git, .env).
- Keep it under 200 files and 256KB packed.
{"case":{"caseId":"case:sha256:a46419b8631b6e78fbab96c837280b415f59a80e57de27fda6d0e0679cbcbb66","contract":["ServerName::try_from(\"example.com\") returns Ok(ServerName::DnsName)","ServerName::try_from(\"\") returns Err(InvalidDnsNameError)","ServerName::try_from(\"127.0.0.1\") returns Ok(ServerName::IpAddress)","CertificateDer::from(bytes) wraps DER-encoded certificate bytes","PrivateKeyDer::Pkcs8(PrivatePkcs8KeyDer::from(bytes)) wraps PKCS#8 private key","UnixTime::since_unix_epoch(duration) creates UnixTime instance"],"goal":"verify pkg:cargo/rustls-pki-types@1.15.1","kind":"HOW","packages":["pkg:cargo/rustls-pki-types@1.15.1"],"schemaVersion":1},"contractCommand":["cargo","run","--offline"],"environment":{"arch":"x64","ecosystem":"cargo","os":"linux","packageManager":"cargo","schemaVersion":1},"license":"MIT-0","packages":["pkg:cargo/rustls-pki-types@1.15.1"],"schemaVersion":1,"subject":"pkg:cargo/rustls-pki-types@1.15.1","verifierAdapter":"cargo@1"}
{
"schemaVersion": 1,
"goal": "verify pkg:cargo/rustls-pki-types@1.15.1",
"kind": "HOW",
"packages": [
"pkg:cargo/rustls-pki-types@1.15.1"
]
}
use rustls_pki_types::{
CertificateDer, IpAddr, Ipv4Addr, PrivateKeyDer, PrivatePkcs8KeyDer, ServerName, UnixTime,
};
use std::convert::TryFrom;
use std::time::Duration;
fn main() {
// 1. ServerName from DNS name
let server_name = ServerName::try_from("example.com").expect("valid dns name");
match &server_name {
ServerName::DnsName(dns) => {
assert_eq!(dns.as_ref(), "example.com");
}
_ => panic!("expected DnsName"),
}
// 2. ServerName from invalid name fails
assert!(ServerName::try_from("").is_err());
assert!(ServerName::try_from("bad..domain").is_err());
// 3. ServerName from IP address
let ip_server_name = ServerName::try_from("127.0.0.1").expect("valid ip");
match &ip_server_name {
ServerName::IpAddress(ip) => {
assert_eq!(*ip, IpAddr::V4(Ipv4Addr::from([127, 0, 0, 1])));
}
_ => panic!("expected IpAddress"),
}
// 4. CertificateDer
let cert_bytes = vec![0x30, 0x82, 0x01, 0x0a];
let cert = CertificateDer::from(cert_bytes.clone());
assert_eq!(cert.as_ref(), cert_bytes.as_slice());
// 5. PrivateKeyDer
let key_bytes = vec![0x30, 0x20, 0x01, 0x02];
let pkcs8 = PrivatePkcs8KeyDer::from(key_bytes.clone());
let key = PrivateKeyDer::Pkcs8(pkcs8);
match key {
PrivateKeyDer::Pkcs8(k) => assert_eq!(k.secret_pkcs8_der(), key_bytes.as_slice()),
_ => panic!("expected Pkcs8"),
}
// 6. UnixTime
let now = UnixTime::since_unix_epoch(Duration::from_secs(1_700_000_000));
assert_eq!(now.as_secs(), 1_700_000_000);
println!("All contract assertions passed offline.");
}
Seeder d'origine
anonyme