not to mention that unless someone is very familiar with the code of dependencies it's very hard to review hundreds of small near meaningless changes unrelated to your actual functional/business requirements.
something like cargo-crev for npm might be a long term solution
something like cargo-crev for npm might be a long term solution
https://github.com/crev-dev/cargo-crev