It would be nice to have cargo-deny to check for vulnerabilities in our dependencies. Examples: - https://github.com/rust-lang/crates.io/blob/main/deny.toml