PkgRadar

Cargo · crates.io

distkit

Credential File Packaged: distkit-0.5.1/.env

Why PkgRadar flagged 0.5.1

SeveritySignalEvidence
highCredential File Packageddistkit-0.5.1/.env · distkit-0.5.1/.env

Scanned versions

VersionVerdictScoreScanned (UTC)
0.5.1High risk352026-06-15
0.5.0High risk352026-06-15

Block this in CI

PkgRadar gates distkit (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem cargo [email protected]