Cargo · crates.io
zorath-env
Webhook Exfil Endpoint: matched "hooks.slack.com/services/"
Why PkgRadar flagged 0.3.11
| Severity | Signal | Evidence |
|---|---|---|
| high | Webhook Exfil Endpoint | matched "hooks.slack.com/services/" · zorath-env-0.3.11/src/secrets.rs |
| medium | Remote Payload | matched "curl " · zorath-env-0.3.11/src/commands/template.rs |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.3.11 | High risk | 67 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem cargo [email protected]