PkgRadar

Composer · packagist.org

etechflow/module-supplier-autoflow

Webhook Exfil Endpoint: matched "ngrok-free.app"

Why PkgRadar flagged 1.1.0

SeveritySignalEvidence
highWebhook Exfil Endpointmatched "ngrok-free.app" · etechflow-module-supplier-autoflow-a499980/Model/LicenseValidator.php
mediumRemote Payloadmatched "Curl " · etechflow-module-supplier-autoflow-a499980/Controller/Adminhtml/License/Activated.php
mediumRemote Payloadmatched "Curl " · etechflow-module-supplier-autoflow-a499980/Controller/Adminhtml/License/Checkout.php
mediumRemote Payloadmatched "Curl " · etechflow-module-supplier-autoflow-a499980/Model/LicenseValidator.php

Scanned versions

VersionVerdictScoreScanned (UTC)
1.1.0High risk762026-06-06

Block this in CI

PkgRadar gates etechflow/module-supplier-autoflow (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem composer etechflow/[email protected]