Cargo · crates.io
aprender-orchestrate
Rs Build Time Command: Process spawn (std::process::Command) at build time.
Why PkgRadar flagged 0.41.0
| Severity | Signal | Evidence |
|---|---|---|
| medium | Rs Build Time Command | Process spawn (std::process::Command) at build time. · aprender-orchestrate-0.41.0/src/pipeline/stages/build.rs |
| medium | Remote Payload | matched "curl " · aprender-orchestrate-0.41.0/src/agent/tool/shell.rs |
| medium | Remote Payload | matched "raw.githubusercontent.com" · aprender-orchestrate-0.41.0/src/cli/bug_hunter_output.rs |
| medium | Remote Payload | matched "curl " · aprender-orchestrate-0.41.0/src/cli/deploy.rs |
| medium | Remote Payload | matched "curl " · aprender-orchestrate-0.41.0/src/oracle/coursera/key_concepts.rs |
| medium | Remote Payload | matched "curl " · aprender-orchestrate-0.41.0/src/oracle/svg/renderers/text_heavy.rs |
| medium | Remote Payload | matched "curl " · aprender-orchestrate-0.41.0/src/serve/banco/compat_ollama.rs |
| medium | Remote Payload | matched "curl " · aprender-orchestrate-0.41.0/src/serve/banco/handlers.rs |
| medium | Remote Payload | matched "curl " · aprender-orchestrate-0.41.0/src/serve/banco/handlers_completions.rs |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.41.0 | High risk | 97 | 2026-06-11 |
0.40.1 | High risk | 97 | 2026-06-11 |
0.40.0 | High risk | 97 | 2026-06-11 |
0.39.0 | High risk | 97 | 2026-06-11 |
0.38.0 | High risk | 97 | 2026-06-10 |
0.36.0 | High risk | 97 | 2026-06-10 |
Related campaigns
- Noah Gift — 27 releases, max score 143
Block this in CI
pkgradar gate --ecosystem cargo [email protected]