PkgRadar

Cargo · crates.io

sigmashake-ssg

Remote Payload: matched "github.com/sigmashakeinc/ssg/releases/download"

Why PkgRadar flagged 0.29.152

SeveritySignalEvidence
mediumRemote Payloadmatched "github.com/sigmashakeinc/ssg/releases/download" · sigmashake-ssg-0.29.152/src/main.rs

Scanned versions

VersionVerdictScoreScanned (UTC)
0.29.152Review122026-06-05
0.29.151Review122026-06-05
0.29.145Review122026-06-04
0.29.141Review122026-06-03
0.29.140Review122026-05-31
0.29.139Review122026-05-30
0.29.136Review122026-05-29

Block this in CI

PkgRadar gates sigmashake-ssg (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem cargo [email protected]