PkgRadar

Cargo · crates.io

meerkat-tools

Remote Payload: matched "curl "

Why PkgRadar flagged 0.7.8

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · meerkat-tools-0.7.8/src/builtin/shell/security.rs

Scanned versions

VersionVerdictScoreScanned (UTC)
0.7.8Review122026-06-17
0.7.7Review122026-06-17
0.7.6Review122026-06-17
0.7.5Review122026-06-15
0.7.4Review122026-06-15
0.7.3Review122026-06-14
0.7.1Review122026-06-12
0.7.0-alpha.0Review122026-06-04
0.6.32Review122026-06-02
0.6.31Review122026-06-02
0.6.30Review122026-06-01
0.6.29Review122026-06-01
0.6.28Review122026-05-31
0.6.27Review122026-05-28
0.6.26Review122026-05-27

Block this in CI

PkgRadar gates meerkat-tools (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem cargo [email protected]