PkgRadar

Composer · packagist.org

etechflow/module-image-optimizer

Webhook Exfil Endpoint: matched "ngrok-free.app"

Why PkgRadar flagged 1.4.1

SeveritySignalEvidence
highWebhook Exfil Endpointmatched "ngrok-free.app" · etechflow-module-image-optimizer-cfd2f69/Model/LicenseValidator.php
mediumRemote Payloadmatched "Curl " · etechflow-module-image-optimizer-cfd2f69/Controller/Adminhtml/License/Activated.php
mediumRemote Payloadmatched "Curl " · etechflow-module-image-optimizer-cfd2f69/Controller/Adminhtml/License/Checkout.php
mediumRemote Payloadmatched "Curl " · etechflow-module-image-optimizer-cfd2f69/Model/LicenseValidator.php
mediumRemote Payloadmatched "cUrl " · etechflow-module-image-optimizer-cfd2f69/Plugin/Catalog/Block/PictureBlockPlugin.php

Scanned versions

VersionVerdictScoreScanned (UTC)
1.4.1High risk882026-06-03

Block this in CI

PkgRadar gates etechflow/module-image-optimizer (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem composer etechflow/[email protected]