PkgRadar

Cargo · crates.io

ant-core

Remote Payload: matched "github.com/{GITHUB_REPO}/releases/download"

Why PkgRadar flagged 0.2.7

SeveritySignalEvidence
mediumRemote Payloadmatched "github.com/{GITHUB_REPO}/releases/download" · ant-core-0.2.7/src/node/binary.rs
mediumRemote Payloadmatched "github.com/{GITHUB_REPO}/releases/download" · ant-core-0.2.7/src/update.rs

Scanned versions

VersionVerdictScoreScanned (UTC)
0.2.7Review162026-06-03
0.2.6Review242026-05-28

Block this in CI

PkgRadar gates ant-core (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem cargo [email protected]