Package0.6.3.2Distribution
hackage-security
Hackage security library
- Version0.6.3.2
- CategoryDistribution
- LicenceBSD-3-Clause
- AuthorEdsko de Vries
- Maintainercabal-devel@haskell.org
- Homepagegithub.com/haskell/hackage-security
- Pinned byhackage hackage-security 0.6.3.2
- Sourcehackage.haskell.org/package/hackage-security-0.6.3.2
Modules
18 modules- Hackage.Security.Client116Main entry point into the Hackage Security framework for clients
- Hackage.Security.Client.Formats10
- Hackage.Security.Client.Repository18Abstract definition of a Repository Most clients should only need to import this module if they wish to define
- Hackage.Security.Client.Repository.Cache10The files we cache from the repository Both the Local and the Remote repositories make use of this module.
- Hackage.Security.Client.Repository.HttpLib7Abstracting over HTTP libraries
- Hackage.Security.Client.Repository.Local3Local repository
- Hackage.Security.Client.Repository.Remote6An implementation of Repository that talks to repositories over HTTP. This implementation is itself parameterized over a HttpClient, so t…
- Hackage.Security.Client.Verify6
- Hackage.Security.JSON41Hackage-specific wrappers around the Util.JSON module
- Hackage.Security.Key.Env9
- Hackage.Security.Server108Main entry point into the Hackage Security framework for clients
- Hackage.Security.TUF.FileMap9Information about files Intended to be double imported import Hackage.Security.TUF.FileMap (FileMap)
- Hackage.Security.Trusted17
- Hackage.Security.Util.Checked9Checked exceptions
- Hackage.Security.Util.Path61A more type-safe version of file paths This module is intended to replace imports of System.FilePath, and
- Hackage.Security.Util.Pretty1Producing human-reaadable strings
- Hackage.Security.Util.Some8Hiding existentials
- Text.JSON.Canonical5Minimal implementation of Canonical JSON. http://wiki.laptop.org/go/Canonical_JSON A "canonical JSON" format is provided in order to prov…
Description
The hackage security library provides both server and client utilities for securing the Hackage package server (https://hackage.haskell.org/). It is based on The Update Framework (https://theupdateframework.com/), a set of recommendations developed by security researchers at various universities in the US as well as developers on the Tor project (https://www.torproject.org/).
The current implementation supports only index signing, thereby enabling untrusted mirrors. It does not yet provide facilities for author package signing.
The library has two main entry points: Hackage.Security.Client is the main entry point for clients (the typical example being cabal), and Hackage.Security.Server is the main entry point for servers (the typical example being hackage-server).
Depends on
20 packages- Cabal-syntax-3.12.1.0with GHC
- base-4.20.2.0with GHC
- base16-bytestring-1.0.2.0in this set
- base64-bytestring-1.2.1.0in this set
- bytestring-0.12.2.0with GHC
- containers-0.7with GHC
- cryptohash-sha256-0.11.102.1in this set
- directory-1.3.8.5with GHC
- ed25519-0.0.5.0in this set
- filepath-1.5.4.0with GHC
- ghc-prim-0.12.0with GHC
- mtl-2.3.1with GHC
- network-3.2.8.0in this set
- network-uri-2.6.4.2in this set
- parsec-3.1.18.0with GHC
- pretty-1.1.3.6with GHC
- template-haskell-2.22.0.0with GHC
- time-1.12.2with GHC
- transformers-0.6.1.1with GHC
- zlib-0.7.1.0in this set