PkgRadar

Cargo · crates.io

sampo-github-action

Remote Payload: matched "api.github.com/graphql"

Why PkgRadar flagged 0.16.0

SeveritySignalEvidence
mediumRemote Payloadmatched "api.github.com/graphql" · sampo-github-action-0.16.0/src/github.rs

Scanned versions

VersionVerdictScoreScanned (UTC)
0.16.0Review82026-06-07

Block this in CI

PkgRadar gates sampo-github-action (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem cargo [email protected]
sampo-github-action — Cargo security scan | PkgRadar