PkgRadar

Composer · packagist.org

progalaxyelabs/stonescriptphp

Remote Payload: matched "raw.githubusercontent.com"

Why PkgRadar flagged 4.0.0

SeveritySignalEvidence
mediumRemote Payloadmatched "raw.githubusercontent.com" · progalaxyelabs-StoneScriptPHP-eff6f15/cli/upgrade.php
mediumRemote Payloadmatched "curl " · progalaxyelabs-StoneScriptPHP-eff6f15/src/Auth/Client/AuthServiceClient.php
mediumRemote Payloadmatched "curl " · progalaxyelabs-StoneScriptPHP-eff6f15/src/Lib/Email/MyZeptoMail.php

Scanned versions

VersionVerdictScoreScanned (UTC)
4.0.0High risk182026-06-14
v3.33.0High risk182026-06-12
v3.32.5High risk182026-06-08
v3.32.4High risk182026-06-07
v3.32.3High risk182026-06-04
v3.32.0High risk182026-06-04
v3.30.0High risk182026-06-04
v3.26.0High risk182026-06-02
v3.25.0Review182026-05-30

Block this in CI

PkgRadar gates progalaxyelabs/stonescriptphp (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem composer progalaxyelabs/[email protected]
progalaxyelabs/stonescriptphp — Composer security scan | PkgRadar