PkgRadar

Cargo · crates.io

reddb-io-server

Remote Payload: matched "curl "

Why PkgRadar flagged 1.11.0

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · reddb-io-server-1.11.0/src/storage/backend/d1.rs
mediumRemote Payloadmatched "curl " · reddb-io-server-1.11.0/src/storage/backend/http.rs
mediumRemote Payloadmatched "curl " · reddb-io-server-1.11.0/src/storage/backend/turso.rs

Scanned versions

VersionVerdictScoreScanned (UTC)
1.11.0High risk362026-06-15
1.10.1High risk362026-06-10
1.10.0High risk362026-06-03
1.9.1High risk362026-05-31
1.9.0High risk362026-05-31
1.8.0High risk362026-05-31
1.7.0Review362026-05-27

Block this in CI

PkgRadar gates reddb-io-server (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem cargo [email protected]