I'm working on a tool for collaboratively reviewing Rust crate dependencies: https://github.com/thirdpass-org/thirdpass
Also supports npm, PyPI, and Ansible Galaxy.