Reference Implementations
See existing implementations for reference:
crates/deps-cargo/- Rust/Cargo.toml with crates.io sparse indexcrates/deps-npm/- JavaScript/package.json with npm registrycrates/deps-pypi/- Python/pyproject.toml/poetry/requirements.txt with PyPI API and PEP 508 marker supportcrates/deps-go/- Go/go.mod with proxy.golang.orgcrates/deps-bundler/- Ruby/Gemfile with RubyGems APIcrates/deps-dart/- Dart/pubspec.yaml with pub.dev APIcrates/deps-maven/- Java/pom.xml with Maven Central (CDN metadata + Solr search)crates/deps-gradle/- Kotlin/Groovy with version catalogs and property resolutioncrates/deps-composer/- PHP/composer.json with Packagist V2 APIcrates/deps-swift/- Swift/Package.swift with GitHub API supportcrates/deps-nuget/- C#/.NET/.csproj/packages.config with NuGet V3 registry (SemVer2 prerelease, central package management)crates/deps-deno/- Deno/deno.json with the JSR API, delegatingnpm:specifiers todeps-npm’s registry client — the reference implementation for an ecosystem that dispatches across two registries from one manifestcrates/deps-github-actions/- GitHub Actions/.github/workflows/*.yml+action.ymlwith the GitHub tags API — the reference implementation for a CI/CD pinning ecosystem (no package registry,manifest_directory_patterns()instead of exact filenames, mutable-ref-vs-SHA pinning diagnostics) rather than a language package managercrates/deps-gitlab-ci/- GitLab CI/CD/.gitlab-ci.ymlwith the GitLab tags/releases API — the second CI/CD pinning reference implementation, plus YAML anchor/alias resolution and self-hosted-instance host configuration