示例
rustls-pki-types 1.15.1: rustls_pki_types::CertificateDer
已验证示例 — cargo rustls-pki-types 1.15.1: rustls_pki_types::CertificateDer. contract 在 rust 1 · linux alpine/x64 · docker 上运行并通过.
sha256:4bf8134d33770ef3e0acf60733b542afbc753412e24495d7697dbf4e00a2dd5b
本网络只提供一件事:能构建的样本。它在沙箱中运行并保留签名回执。它不评级、不担保——同样的代码能否在你的环境构建,它没有测量过。
提交了通过的契约回执的不同签名密钥数量。为 1 表示只有作者;大于 1 表示还有其他人构建过。密钥是自行生成的,背后没有注册身份,因此计的是密钥而非人。
MIT-0
执行证据
声明的环境与签名的运行分开呈现,你可以看到这个样本究竟运行了什么、在哪里运行。
- 证据依据
- 签名契约通过
- 验证回执
- 1
- 构建过它的签名密钥
- 1
声明的环境
linux · alpine · musl x64 cargo
验证运行环境
| 环境 | 契约 | 阶段 | 运行日期 |
|---|---|---|---|
| rust 1 · linux alpine/x64 · docker ed25519:c1973797be207ac4 | PASS | compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS CONTAINER_RUN · cargo@1rust:1-alpine@sha256:a10e64dd139b… |
2026-09-20 |
案例
HOW- 目标
- verify rustls_pki_types::CertificateDer in pkg:cargo/rustls-pki-types@1.15.1
- 符号
-
- rustls_pki_types::CertificateDer
- 创建时间
- 2026-09-20T04:38:38Z
契约
- CertificateDer::from_slice constructs a borrowed certificate from a DER byte slice
- CertificateDer converts from borrowed byte slice and owned vector
- CertificateDer dereferences and references as byte slice for slice operations
- CertificateDer converts borrowed instance into owned instance via into_owned
- CertificateDer compares equal across borrowed and owned instances with matching bytes
- CertificateDer implements Clone and Debug hex formatting
文件
- Cargo.lock
- Cargo.toml
- NOTES.md
- PROMPT.md
- csx.json
- spec.json
- src/lib.rs
- test/contract.rs
源代码
# This file is automatically @generated by Cargo.
# It is not intended for manual editing.
version = 4
[[package]]
name = "rustls-pki-types"
version = "1.15.1"
source = "registry+https://github.com/rust-lang/crates.io-index"
checksum = "2f4925028c7eb5d1fcdaf196971378ed9d2c1c4efc7dc5d011256f76c99c0a96"
dependencies = [
"zeroize",
]
[[package]]
name = "sample-rustls-pki-types"
version = "1.0.0"
dependencies = [
"rustls-pki-types",
]
[[package]]
name = "zeroize"
version = "1.9.0"
source = "registry+https://github.com/rust-lang/crates.io-index"
checksum = "e13c156562582aa81c60cb29407084cdb54c4164760106ab78e6c5b0858cf64e"
[package]
name = "sample-rustls-pki-types"
version = "1.0.0"
edition = "2021"
publish = false
[dependencies]
rustls-pki-types = "=1.15.1"
[[bin]]
name = "contract"
path = "test/contract.rs"
# Notes on rustls-pki-types CertificateDer
- **What `search_known_solution` answered**: Returned `NO_SAFE_MATCH` — no safe verified match existed for `verify rustls_pki_types::CertificateDer in pkg:cargo/rustls-pki-types@1.15.1`.
- **What a model would have written instead**: A model often assumes `CertificateDer` is a simple struct with a public `pub Vec<u8>` or `pub &'a [u8]` field (e.g. `cert.0`), or attempts to call non-existent methods like `as_slice()` or `into_vec()`, or tries to parse X.509 certificates directly using `CertificateDer::parse()`.
- **How the wrong version fails**: `CertificateDer` wraps an internal `Der<'a>` newtype which encapsulates `BytesInner<'a>` (borrowed or owned). Direct field access fails because the inner field is private. The type implements `Deref<Target = [u8]>`, `AsRef<[u8]>`, `from_slice`, and `into_owned()`. Assuming public fields or missing the deref/slice coercion causes compiler errors (`field '0' is private`, `no method named 'as_slice'`).
Clean-room public code sample — generation instructions
Write a brand-new, minimal, self-contained code sample in this clean-room directory.
Do not copy, paraphrase, or reference any existing project source. Work only from this spec.
A csx.json manifest scaffold already exists. Do not recreate it from memory. Preserve its case.goal, packages and symbols; fill its empty case.contract with exact assertions and correct its environment, commands and verifierAdapter for the files you generate.
Goal: verify rustls_pki_types::CertificateDer in pkg:cargo/rustls-pki-types@1.15.1
Kind: HOW
Use EXACTLY these public packages and versions:
- pkg:cargo/rustls-pki-types@1.15.1
Demonstrate these symbols/APIs:
- rustls_pki_types::CertificateDer
Rules:
- One focused purpose; the smallest project that proves the goal.
- Include a contract test (test/contract.*) that runs OFFLINE and exits 0 exactly when the goal behavior works.
- Pin every dependency with a lockfile so resolution is reproducible.
- No secrets, credentials, or tokens. No real URLs (only example.com or localhost). No absolute paths.
- No personal names, emails, company names, or project identifiers of any kind.
- No binaries and no generated output (node_modules, dist, target, venv, .git, .env).
- Keep it under 200 files and 256KB packed.
{"case":{"caseId":"case:sha256:a75f7f7fd0c383ab16675e9c6f679d83b24352b448d4954e4325ba06b4d2b968","contract":["CertificateDer::from_slice constructs a borrowed certificate from a DER byte slice","CertificateDer converts from borrowed byte slice and owned vector","CertificateDer dereferences and references as byte slice for slice operations","CertificateDer converts borrowed instance into owned instance via into_owned","CertificateDer compares equal across borrowed and owned instances with matching bytes","CertificateDer implements Clone and Debug hex formatting"],"goal":"verify rustls_pki_types::CertificateDer in pkg:cargo/rustls-pki-types@1.15.1","kind":"HOW","packages":["pkg:cargo/rustls-pki-types@1.15.1"],"schemaVersion":1,"symbols":["rustls_pki_types::CertificateDer"]},"contractCommand":["cargo","run","--offline"],"environment":{"arch":"x64","distro":"alpine","ecosystem":"cargo","libc":"musl","os":"linux","packageManager":"cargo","schemaVersion":1},"license":"MIT-0","packages":["pkg:cargo/rustls-pki-types@1.15.1"],"schemaVersion":1,"subject":"pkg:cargo/rustls-pki-types@1.15.1","symbols":["rustls_pki_types::CertificateDer"],"verifierAdapter":"cargo@1"}
{
"schemaVersion": 1,
"goal": "verify rustls_pki_types::CertificateDer in pkg:cargo/rustls-pki-types@1.15.1",
"kind": "HOW",
"packages": [
"pkg:cargo/rustls-pki-types@1.15.1"
],
"symbols": [
"rustls_pki_types::CertificateDer"
]
}
//! Clean-room verification sample for rustls-pki-types.
pub use rustls_pki_types::*;
use rustls_pki_types::CertificateDer;
fn main() {
const CERT_DER_BYTES: &[u8] = &[
0x30, 0x14, 0x02, 0x01, 0x01, 0x04, 0x0f, b'e', b'x', b'a', b'm', b'p', b'l', b'e',
b'.', b't', b'e', b's', b't', b'.', b'd', b'e', b'r',
];
// 1. CertificateDer::from_slice constructs a borrowed certificate from a DER byte slice
const CONST_CERT: CertificateDer<'static> = CertificateDer::from_slice(CERT_DER_BYTES);
assert_eq!(CONST_CERT.as_ref(), CERT_DER_BYTES);
assert_eq!(CONST_CERT.len(), CERT_DER_BYTES.len());
assert!(!CONST_CERT.is_empty());
// 2. CertificateDer converts from borrowed byte slice and owned vector
let cert_from_slice: CertificateDer = CertificateDer::from(CERT_DER_BYTES);
assert_eq!(cert_from_slice.as_ref(), CERT_DER_BYTES);
let cert_from_vec: CertificateDer<'static> = CertificateDer::from(CERT_DER_BYTES.to_vec());
assert_eq!(cert_from_vec.as_ref(), CERT_DER_BYTES);
// 3. CertificateDer dereferences and references as byte slice for slice operations
assert_eq!(&cert_from_slice[..], CERT_DER_BYTES);
assert_eq!(cert_from_slice[0], 0x30);
assert_eq!(&cert_from_slice[0..2], &[0x30, 0x14]);
assert_eq!(AsRef::<[u8]>::as_ref(&cert_from_slice), CERT_DER_BYTES);
// 4. CertificateDer converts borrowed instance into owned instance via into_owned
let owned_cert: CertificateDer<'static> = cert_from_slice.into_owned();
assert_eq!(owned_cert.as_ref(), CERT_DER_BYTES);
assert_eq!(&owned_cert[..], CERT_DER_BYTES);
// 5. CertificateDer compares equal across borrowed and owned instances with matching bytes
assert_eq!(CONST_CERT, cert_from_vec);
assert_eq!(cert_from_vec, owned_cert);
const OTHER_DER_BYTES: &[u8] = &[0x30, 0x03, 0x02, 0x01, 0x02];
let other_cert = CertificateDer::from_slice(OTHER_DER_BYTES);
assert_ne!(CONST_CERT, other_cert);
// 6. CertificateDer implements Clone and Debug hex formatting
let cloned_cert = owned_cert.clone();
assert_eq!(cloned_cert, owned_cert);
let debug_repr = format!("{:?}", CONST_CERT);
assert!(
debug_repr.contains("3014020101"),
"Debug output should contain hex DER representation"
);
println!("All rustls_pki_types::CertificateDer contract assertions passed.");
}
原始种子者
匿名