Cross-Ecosystem Features
The behaviors in this chapter are implemented once in deps-core (see
Architecture Overview) and apply, with the coverage noted in each section,
across most or all of the 14 supported ecosystems — rather than being reimplemented per crate.
- Conventions — the inlay hint icons and hover/diagnostic/code lens text conventions every ecosystem shares.
- Licensing — license hover and the license allow/deny policy diagnostic.
- Yanked Versions & Vulnerabilities — the two independent yanked-version diagnostics, the vulnerability-fix code action, and the supply-chain trust signal.
- Version Diagnostics — unsatisfiable requirements, package deprecation, the dependency-count ceiling, and the bulk “update outdated” code lens.
- CI/CD Pinning — the mutable-ref-pin diagnostic and bulk “pin to SHA” code lens shared by GitHub Actions and GitLab CI/CD.
Ecosystem-specific behavior — parsing, registry resolution, custom/private registries — lives in the Ecosystem Reference chapters instead.