PkgRadar

Coverage rubygems

RubyGems rubygems.org

Ruby. C-extension gems run extconf.rb at install time; the scanner gates on shell-out paired with eval/network/deserialize combos so legit pkg-config / make calls aren't penalized.

Packages scanned

1,814

High risk

27

Review

189

High-severity findings

72

Last scan

3m ago

Install-time attack surface

extconf.rb + .gemspec + Rakefile — run during native-extension build / gem install

Supported lockfile formats

Spec format

pkgradar gate --ecosystem rubygems [email protected]

Recent activity

The corpus-wide release feed lives on /campaigns. A per-ecosystem release feed for RubyGems is on the roadmap — the stats above are filtered to this ecosystem in the meantime.

Other ecosystems