PkgRadar

Cargo · crates.io

ic-testkit

Remote Payload: matched "github.com/dfinity/pocketic/releases/download"

Why PkgRadar flagged 0.1.11

SeveritySignalEvidence
mediumRemote Payloadmatched "github.com/dfinity/pocketic/releases/download" · ic-testkit-0.1.11/src/pic/runtime.rs

Scanned versions

VersionVerdictScoreScanned (UTC)
0.1.11Review122026-05-29
0.1.10Review122026-05-29
0.1.9Review122026-05-28
0.1.8Review122026-05-28
0.1.7Review122026-05-28
0.1.6Review122026-05-28
0.1.5Review122026-05-28
0.1.4Low risk02026-05-27
0.1.3Low risk02026-05-27

Block this in CI

PkgRadar gates ic-testkit (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem cargo [email protected]