Cargo · crates.io
rialo-build-lib
Remote Payload: matched "github.com/riscv-collab/riscv-gnu-toolchain/releases/download"
Why PkgRadar flagged 0.11.0-alpha.0
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "github.com/riscv-collab/riscv-gnu-toolchain/releases/download" · rialo-build-lib-0.11.0-alpha.0/src/toolchain/gnu_riscv.rs |
| medium | Remote Payload | matched "github.com/subzerolabs/rialo-toolchains/releases/download" · rialo-build-lib-0.11.0-alpha.0/src/toolchain/rialo_rust.rs |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.11.0-alpha.0 | Review | 39 | 2026-06-15 |
0.10.2 | Review | 39 | 2026-06-15 |
Block this in CI
pkgradar gate --ecosystem cargo [email protected]