PkgRadar

Cargo · crates.io

llmtrim

Remote Payload: matched "curl "

Why PkgRadar flagged 0.1.5

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · llmtrim-0.1.5/src/setup.rs
mediumRemote Payloadmatched "iwr " · llmtrim-0.1.5/src/update.rs

Scanned versions

VersionVerdictScoreScanned (UTC)
0.1.5Review242026-06-12
0.1.4Review242026-06-12
0.1.0Review242026-06-12

Block this in CI

PkgRadar gates llmtrim (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem cargo [email protected]