PkgRadar

Cargo · crates.io

aprender-shell

Remote Payload: matched "curl "

Why PkgRadar flagged 0.41.0

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · aprender-shell-0.41.0/src/config.rs
mediumRemote Payloadmatched "curl " · aprender-shell-0.41.0/src/corpus.rs
mediumRemote Payloadmatched "curl " · aprender-shell-0.41.0/src/security.rs

Scanned versions

VersionVerdictScoreScanned (UTC)
0.41.0High risk282026-06-11
0.40.1High risk282026-06-11
0.40.0High risk282026-06-11
0.39.0High risk282026-06-11
0.38.0High risk282026-06-10
0.37.0High risk282026-06-10
0.36.0High risk282026-06-10

Block this in CI

PkgRadar gates aprender-shell (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem cargo [email protected]