Пример
rustls-pki-types 1.15.1: rustls_pki_types::PrivateKeyDer
Проверенный пример — cargo rustls-pki-types 1.15.1: rustls_pki_types::PrivateKeyDer. Контракт выполнен на rust 1 · linux alpine/x64 · docker и пройден.
sha256:4f385d3638627df55ba1fff3dd1ce04c6a65314e2af8479963799749ab8fdb2e
Эта сеть предлагает одно: образец, который собирается. Она запустила его в песочнице и сохранила подписанную квитанцию. Она ничего не оценивает и ничего не гарантирует — собирается ли тот же код у вас, она не измеряла.
Сколько различных ключей подписи подали пройденную квитанцию контракта. Один — только автор; больше одного — значит, кто-то ещё тоже собрал. Ключ создаётся сам и не имеет зарегистрированной личности, поэтому считаются ключи, а не люди.
MIT-0
Свидетельства выполнения
Заявленное окружение и подписанные запуски разделены, чтобы вы точно видели, что этот образец запускал и где.
- Основа свидетельства
- Подписанный контракт пройден
- Квитанции проверки
- 1
- Ключи подписи, собравшие его
- 1
Заявленная среда
linux · alpine · musl x64 cargo
Среды запусков проверки
| Окружение | Контракт | Этапы | Запуск |
|---|---|---|---|
| rust 1 · linux alpine/x64 · docker ed25519:c1973797be207ac4 | PASS | compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS CONTAINER_RUN · cargo@1rust:1-alpine@sha256:a10e64dd139b… |
2026-09-20 |
Кейс
HOW- Цель
- verify rustls_pki_types::PrivateKeyDer in pkg:cargo/rustls-pki-types@1.15.1
- Пакеты
- Символы
-
- rustls_pki_types::PrivateKeyDer
- Создан
- 2026-09-20T05:08:41Z
Контракт
- PrivateKeyDer::from wraps PrivatePkcs8KeyDer into PrivateKeyDer::Pkcs8 and secret_der matches raw DER bytes
- PrivateKeyDer::try_from parses valid PKCS#1 and SEC1 DER byte slices into their respective variants
- PrivateKeyDer::try_from rejects invalid DER byte slices with an error
- PrivateKeyDer::clone_key produces an owned static PrivateKeyDer preserving secret_der bytes and equality
- PrivateKeyDer::try_from accepts owned Vec<u8> returning owned PrivateKeyDer
Файлы
- Cargo.lock
- Cargo.toml
- PROMPT.md
- csx.json
- spec.json
- src/lib.rs
- test/contract.rs
Исходный код
# This file is automatically @generated by Cargo.
# It is not intended for manual editing.
version = 4
[[package]]
name = "rustls-pki-types"
version = "1.15.1"
source = "registry+https://github.com/rust-lang/crates.io-index"
checksum = "2f4925028c7eb5d1fcdaf196971378ed9d2c1c4efc7dc5d011256f76c99c0a96"
dependencies = [
"zeroize",
]
[[package]]
name = "sample-rustls-pki-types"
version = "1.0.0"
dependencies = [
"rustls-pki-types",
]
[[package]]
name = "zeroize"
version = "1.9.0"
source = "registry+https://github.com/rust-lang/crates.io-index"
checksum = "e13c156562582aa81c60cb29407084cdb54c4164760106ab78e6c5b0858cf64e"
[package]
name = "sample-rustls-pki-types"
version = "1.0.0"
edition = "2021"
publish = false
[dependencies]
rustls-pki-types = { version = "=1.15.1" }
[[bin]]
name = "contract"
path = "test/contract.rs"
Clean-room public code sample — generation instructions
Write a brand-new, minimal, self-contained code sample in this clean-room directory.
Do not copy, paraphrase, or reference any existing project source. Work only from this spec.
A csx.json manifest scaffold already exists. Do not recreate it from memory. Preserve its case.goal, packages and symbols; fill its empty case.contract with exact assertions and correct its environment, commands and verifierAdapter for the files you generate.
Goal: verify rustls_pki_types::PrivateKeyDer in pkg:cargo/rustls-pki-types@1.15.1
Kind: HOW
Use EXACTLY these public packages and versions:
- pkg:cargo/rustls-pki-types@1.15.1
Demonstrate these symbols/APIs:
- rustls_pki_types::PrivateKeyDer
Rules:
- One focused purpose; the smallest project that proves the goal.
- Include a contract test (test/contract.*) that runs OFFLINE and exits 0 exactly when the goal behavior works.
- Pin every dependency with a lockfile so resolution is reproducible.
- No secrets, credentials, or tokens. No real URLs (only example.com or localhost). No absolute paths.
- No personal names, emails, company names, or project identifiers of any kind.
- No binaries and no generated output (node_modules, dist, target, venv, .git, .env).
- Keep it under 200 files and 256KB packed.
{"case":{"caseId":"case:sha256:9a74bb5f74c6f718f3c2007613292e97261235750f0330ad338091a9e56f847f","contract":["PrivateKeyDer::from wraps PrivatePkcs8KeyDer into PrivateKeyDer::Pkcs8 and secret_der matches raw DER bytes","PrivateKeyDer::try_from parses valid PKCS#1 and SEC1 DER byte slices into their respective variants","PrivateKeyDer::try_from rejects invalid DER byte slices with an error","PrivateKeyDer::clone_key produces an owned static PrivateKeyDer preserving secret_der bytes and equality","PrivateKeyDer::try_from accepts owned Vec\u003cu8\u003e returning owned PrivateKeyDer"],"goal":"verify rustls_pki_types::PrivateKeyDer in pkg:cargo/rustls-pki-types@1.15.1","kind":"HOW","packages":["pkg:cargo/rustls-pki-types@1.15.1"],"schemaVersion":1,"symbols":["rustls_pki_types::PrivateKeyDer"]},"contractCommand":["cargo","run","--offline"],"environment":{"arch":"x64","distro":"alpine","ecosystem":"cargo","libc":"musl","os":"linux","packageManager":"cargo","schemaVersion":1},"license":"MIT-0","packages":["pkg:cargo/rustls-pki-types@1.15.1"],"schemaVersion":1,"subject":"pkg:cargo/rustls-pki-types@1.15.1","symbols":["rustls_pki_types::PrivateKeyDer"],"verifierAdapter":"cargo@1"}
{
"schemaVersion": 1,
"goal": "verify rustls_pki_types::PrivateKeyDer in pkg:cargo/rustls-pki-types@1.15.1",
"kind": "HOW",
"packages": [
"pkg:cargo/rustls-pki-types@1.15.1"
],
"symbols": [
"rustls_pki_types::PrivateKeyDer"
]
}
//! Clean-room verification sample for rustls-pki-types PrivateKeyDer.
pub use rustls_pki_types::PrivateKeyDer;
use rustls_pki_types::{PrivateKeyDer, PrivatePkcs8KeyDer};
fn main() {
// 1. Variant wrapping and secret_der retrieval for PKCS#8
let dummy_pkcs8 = vec![0x30, 0x07, 0x02, 0x01, 0x00, 0x30, 0x02, 0x05, 0x00];
let pkcs8_der = PrivatePkcs8KeyDer::from(dummy_pkcs8.clone());
let key_der: PrivateKeyDer = pkcs8_der.into();
assert!(matches!(key_der, PrivateKeyDer::Pkcs8(_)));
assert_eq!(key_der.secret_der(), dummy_pkcs8.as_slice());
// 2. PKCS#1 parsing via TryFrom slice
let dummy_pkcs1 = vec![0x30, 0x05, 0x02, 0x01, 0x00, 0x02, 0x00];
let parsed_pkcs1 = PrivateKeyDer::try_from(dummy_pkcs1.as_slice()).expect("PKCS#1 parse");
assert!(matches!(parsed_pkcs1, PrivateKeyDer::Pkcs1(_)));
assert_eq!(parsed_pkcs1.secret_der(), dummy_pkcs1.as_slice());
// 3. SEC1 parsing via TryFrom slice
let dummy_sec1 = vec![0x30, 0x05, 0x02, 0x01, 0x01, 0x04, 0x00];
let parsed_sec1 = PrivateKeyDer::try_from(dummy_sec1.as_slice()).expect("SEC1 parse");
assert!(matches!(parsed_sec1, PrivateKeyDer::Sec1(_)));
assert_eq!(parsed_sec1.secret_der(), dummy_sec1.as_slice());
// 4. Invalid DER returns Error
let invalid_der = vec![0x00, 0x01, 0x02];
assert!(PrivateKeyDer::try_from(invalid_der.as_slice()).is_err());
// 5. clone_key produces 'static key with identical content and preserves equality
let borrowed: PrivateKeyDer<'_> = PrivateKeyDer::try_from(dummy_pkcs8.as_slice()).unwrap();
let owned: PrivateKeyDer<'static> = borrowed.clone_key();
assert_eq!(borrowed.secret_der(), owned.secret_der());
assert_eq!(borrowed, owned);
// 6. TryFrom<Vec<u8>> accepts owned vector
let owned_from_vec: PrivateKeyDer<'static> =
PrivateKeyDer::try_from(dummy_pkcs1).expect("TryFrom Vec");
assert!(matches!(owned_from_vec, PrivateKeyDer::Pkcs1(_)));
println!("All rustls_pki_types::PrivateKeyDer contract assertions passed successfully.");
}
Исходный сидер
аноним