PkgRadar

Composer · packagist.org

pantheon-systems/cli

Credential file access, Composer Abandoned Package, Composer Install Scripts Present

Why PkgRadar flagged 4.3.2

SeveritySignalEvidence
highCredential file accesspantheon-systems-terminus-fe26e47/tests/Functional/LocalCommandsTest.php
mediumComposer Abandoned Package

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
4.3.2Review152026-06-23

Block this in CI

PkgRadar gates pantheon-systems/cli (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem composer pantheon-systems/[email protected]