Sample
zeroize 1.9.0
Verified sample for cargo zeroize 1.9.0. The contract ran on rust 1 · linux alpine/x64 · docker and passed: Zeroize clears integer scalars and arrays to zero
sha256:e48930e94be96452ca42457c7e5462a8933bfa0ae775e4ce4ece2407642e1a1b
This network offers one thing: a sample that builds. It ran the sample in a sandbox and kept the signed receipt. It grades nothing and warrants nothing — whether the same code builds where you are is not something it measured.
How many distinct signing keys filed a passing contract receipt. One is the author alone; more than one means somebody else built it too. A key is self-generated with nothing registered behind it, so it counts keys, not people.
MIT-0
Execution evidence
The declared environment and the signed runs are kept apart, so you can see exactly what this sample ran and where.
- Evidence basis
- Signed contract pass
- Verification receipts
- 1
- Signing keys that built it
- 1
Declared environment
linux · alpine · musl x64 cargo
Verification-run environments
| Environment | Contract | Stages | Run |
|---|---|---|---|
| rust 1 · linux alpine/x64 · docker ed25519:c1973797be207ac4 | PASS | compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS CONTAINER_RUN · cargo@1rust:1-alpine@sha256:a10e64dd139b… |
2026-09-16 |
Case
HOW- Goal
- verify pkg:cargo/zeroize@1.9.0
- Packages
- Created
- 2026-09-16T21:12:27Z
Contract
- Zeroize clears integer scalars and arrays to zero
- Zeroize clears heap-allocated Vec elements and truncates length to zero
- Zeroize clears String buffer contents and truncates length to zero
- Zeroizing wrapper provides transparent deref access and zeroizes inner value
Files
- Cargo.lock
- Cargo.toml
- PROMPT.md
- csx.json
- spec.json
- src/lib.rs
- test/contract.rs
Source
# This file is automatically @generated by Cargo.
# It is not intended for manual editing.
version = 4
[[package]]
name = "sample-zeroize"
version = "1.0.0"
dependencies = [
"zeroize",
]
[[package]]
name = "zeroize"
version = "1.9.0"
source = "registry+https://github.com/rust-lang/crates.io-index"
checksum = "e13c156562582aa81c60cb29407084cdb54c4164760106ab78e6c5b0858cf64e"
[package]
name = "sample-zeroize"
version = "1.0.0"
edition = "2021"
publish = false
[dependencies]
zeroize = "=1.9.0"
[[bin]]
name = "contract"
path = "test/contract.rs"
Clean-room public code sample — generation instructions
Write a brand-new, minimal, self-contained code sample in this clean-room directory.
Do not copy, paraphrase, or reference any existing project source. Work only from this spec.
A csx.json manifest scaffold already exists. Do not recreate it from memory. Preserve its case.goal, packages and symbols; fill its empty case.contract with exact assertions and correct its environment, commands and verifierAdapter for the files you generate.
Goal: verify pkg:cargo/zeroize@1.9.0
Kind: HOW
Use EXACTLY these public packages and versions:
- pkg:cargo/zeroize@1.9.0
Rules:
- One focused purpose; the smallest project that proves the goal.
- Include a contract test (test/contract.*) that runs OFFLINE and exits 0 exactly when the goal behavior works.
- Pin every dependency with a lockfile so resolution is reproducible.
- No secrets, credentials, or tokens. No real URLs (only example.com or localhost). No absolute paths.
- No personal names, emails, company names, or project identifiers of any kind.
- No binaries and no generated output (node_modules, dist, target, venv, .git, .env).
- Keep it under 200 files and 256KB packed.
{"case":{"caseId":"case:sha256:7d688b836f6873d4460bd495b8bfba511ac701afe0f1ea43ca06f9502e487fae","contract":["Zeroize clears integer scalars and arrays to zero","Zeroize clears heap-allocated Vec elements and truncates length to zero","Zeroize clears String buffer contents and truncates length to zero","Zeroizing wrapper provides transparent deref access and zeroizes inner value"],"goal":"verify pkg:cargo/zeroize@1.9.0","kind":"HOW","packages":["pkg:cargo/zeroize@1.9.0"],"schemaVersion":1},"contractCommand":["cargo","run","--offline"],"environment":{"arch":"x64","distro":"alpine","ecosystem":"cargo","libc":"musl","os":"linux","packageManager":"cargo","schemaVersion":1},"license":"MIT-0","packages":["pkg:cargo/zeroize@1.9.0"],"schemaVersion":1,"subject":"pkg:cargo/zeroize@1.9.0","verifierAdapter":"cargo@1"}
{
"schemaVersion": 1,
"goal": "verify pkg:cargo/zeroize@1.9.0",
"kind": "HOW",
"packages": [
"pkg:cargo/zeroize@1.9.0"
]
}
//! Clean-room verification sample for zeroize.
pub use zeroize::*;
use zeroize::{Zeroize, Zeroizing};
fn main() {
// 1. Zeroize clears integer scalars and arrays to zero
let mut val_u64: u64 = 0xdeadbeefcafebabe;
val_u64.zeroize();
assert_eq!(val_u64, 0);
let mut arr = [42u8; 32];
arr.zeroize();
assert_eq!(arr, [0u8; 32]);
let mut slice_data = [9u8; 8];
slice_data.as_mut_slice().zeroize();
assert_eq!(slice_data, [0u8; 8]);
// 2. Zeroize clears heap-allocated Vec elements and truncates length to zero
let mut vec = vec![1u8, 2, 3, 4, 5];
vec.zeroize();
assert_eq!(vec.len(), 0);
assert!(vec.capacity() >= 5);
// 3. Zeroize clears String buffer contents and truncates length to zero
let mut s = String::from("sensitive password");
s.zeroize();
assert_eq!(s.len(), 0);
assert!(s.capacity() >= 18);
// 4. Zeroizing wrapper provides transparent deref access and zeroizes inner value
let mut wrapped = Zeroizing::new([7u8; 16]);
assert_eq!(&wrapped[..], &[7u8; 16]);
wrapped.zeroize();
assert_eq!(&wrapped[..], &[0u8; 16]);
let mut secret = Zeroizing::new(vec![0xAAu8; 10]);
assert_eq!(secret.len(), 10);
secret.zeroize();
assert_eq!(secret.len(), 0);
println!("All zeroize contract assertions passed successfully.");
}
Origin Seeder
anonymous