PkgRadar

Go modules · proxy.golang.org

github.com/ALRubinger/aileron/internal

Go Generate Shell: //go:generate directive shells out to curl/wget/bash — runs during `go generate`.

Why PkgRadar flagged v0.0.0-20260612024809-736482a64dce

SeveritySignalEvidence
mediumGo Generate Shell//go:generate directive shells out to curl/wget/bash — runs during `go generate`. · github.com/alrubinger/aileron/[email protected]/sandbox/doc.go
mediumRemote Payloadmatched "wget " · github.com/alrubinger/aileron/[email protected]/sandbox/container/runtime.go
mediumRemote Payloadmatched "wget " · github.com/alrubinger/aileron/[email protected]/sandbox/discovery/spec.go
mediumRemote Payloadmatched "wget " · github.com/alrubinger/aileron/[email protected]/sandbox/discovery/tools.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.0.0-20260612024809-736482a64dceHigh risk512026-06-13
v0.0.0-20260612021021-4251d28c5ad5High risk512026-06-13
v0.0.0-20260611181111-bbc517264d7eHigh risk512026-06-12
v0.0.0-20260606091330-8c30aa0f434eHigh risk512026-06-07
v0.0.0-20260606015351-fda5d45f66f0High risk512026-06-07
v0.0.0-20260606003425-78dafc39cdb9High risk512026-06-07
v0.0.0-20260605194104-d4569b716068High risk512026-06-06
v0.0.0-20260605091133-3a23487b0011High risk512026-06-06
v0.0.0-20260605055615-d10616968314High risk512026-06-06
v0.0.0-20260605053455-e03e4e5a8b57High risk512026-06-06
v0.0.0-20260605050039-7550035a77cfHigh risk512026-06-06
v0.0.0-20260604170407-ac160f6e06baHigh risk512026-06-05
v0.0.0-20260603230207-e9ccb25890eeHigh risk512026-06-04
v0.0.0-20260603105940-5b125e622a70High risk512026-06-04
v0.0.0-20260603105816-96d6f30a1283High risk512026-06-04
v0.0.0-20260603104236-b5526eef77cdHigh risk512026-06-04
v0.0.0-20260603103535-cc0416ff7d68High risk512026-06-04
v0.0.0-20260603093613-72ba688403e0High risk512026-06-04
v0.0.0-20260603014413-8949d381ee50High risk512026-06-04
v0.0.0-20260602184430-6ceea84fb0ebHigh risk512026-06-03
v0.0.0-20260602043232-2f475384b8eeHigh risk512026-06-03
v0.0.0-20260601234954-0f3a30f0cbf0High risk512026-06-02
v0.0.0-20260601234303-3cfaff8fef71High risk512026-06-02
v0.0.0-20260601185825-d5883691557cReview392026-06-02
v0.0.0-20260601100646-23adfeaa8471Review392026-06-02
v0.0.0-20260601092737-24a2a1b1c874Review392026-06-02
v0.0.0-20260601090059-e57d0eb0215fReview392026-06-02
v0.0.0-20260601041724-2d9457bbe926Review392026-06-02
v0.0.0-20260601040353-7ed755f57bb8Review392026-06-02
v0.0.0-20260531033729-522f6921aee6Review392026-06-01
v0.0.0-20260530203103-a5775cb03a28Review272026-05-31
v0.0.0-20260530021916-2ab685620882Review152026-05-31
v0.0.0-20260530015159-f9ab01a8fc4bReview152026-05-31
v0.0.0-20260530012714-7e5deeae95a2Review152026-05-31
v0.0.0-20260529105122-2a867fbb6387Review152026-05-30
v0.0.0-20260529094836-c8b3ef957808Review152026-05-30
v0.0.0-20260529091634-30f2b294f373Review152026-05-30
v0.0.0-20260529085717-2388130b239cReview152026-05-30
v0.0.0-20260529082102-c953b5eb3a3dReview152026-05-30
v0.0.0-20260528100202-3154aecce599Review442026-05-29

Block this in CI

PkgRadar gates github.com/ALRubinger/aileron/internal (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/ALRubinger/aileron/[email protected]