PkgRadar

Cargo · crates.io

codewhale-whaleflow

Suspicious Publish Context: {"package_age_days":5,"publisher":"Hunter Bown","burst_same_day":11,"burst_week":16,"lure":null,"version_anomaly":false,"new_account":false}

Why PkgRadar flagged 0.8.59

SeveritySignalEvidence
mediumSuspicious Publish Context{"package_age_days":5,"publisher":"Hunter Bown","burst_same_day":11,"burst_week":16,"lure":null,"version_anomaly":false,"new_account":false}

Scanned versions

VersionVerdictScoreScanned (UTC)
0.8.59Review102026-06-13
0.8.58Low risk02026-06-11
0.8.57Low risk02026-06-10
0.8.56Low risk02026-06-10
0.8.54Low risk02026-06-08

Block this in CI

PkgRadar gates codewhale-whaleflow (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem cargo [email protected]