PkgRadar

Coverage pub

Pub (Dart) pub.dev

Dart / Flutter. Pub packages can ship build_runner code generators that execute at consumer build time, plus dart:ffi native library loads. Scanner is preview-quality (pub.dev existence check + tarball walk pending).

Packages scanned

2,158

High risk

3

Review

139

High-severity findings

1

Last scan

5m ago

Install-time attack surface

build_runner generators, dart:ffi native loads, and arbitrary `scripts` in pubspec.yaml

Supported lockfile formats

Spec format

pkgradar gate --ecosystem pub [email protected]

Recent activity

The corpus-wide release feed lives on /campaigns. A per-ecosystem release feed for Pub (Dart) is on the roadmap — the stats above are filtered to this ecosystem in the meantime.

Other ecosystems