PkgRadar

Composer · packagist.org

contao-community-alliance/merger2

Remote Payload

Why PkgRadar flagged 4.4.1

SeveritySignalEvidence
mediumRemote Payload

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
4.4.1Review62026-06-30

Block this in CI

PkgRadar gates contao-community-alliance/merger2 (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem composer contao-community-alliance/[email protected]
contao-community-alliance/merger2 — Composer security scan | PkgRadar