PkgRadar

Go modules · proxy.golang.org

github.com/AitorConS/unikernel-engine

Remote Payload: matched "github.com/AitorConS/UniCLi/releases/download"

Why PkgRadar flagged v0.42.2

SeveritySignalEvidence
mediumRemote Payloadmatched "github.com/AitorConS/UniCLi/releases/download" · github.com/aitorcons/[email protected]/cmd/uni/upgrade.go
mediumRemote Payloadmatched "github.com/AitorConS/UniCli/releases/download" · github.com/aitorcons/[email protected]/internal/package/package.go
mediumRemote Payloadmatched "github.com/AitorConS/UniCLi/releases/download" · github.com/aitorcons/[email protected]/internal/tools/version.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.42.2High risk362026-05-31
v0.44.3High risk362026-05-31
v0.45.0High risk362026-05-31
v0.46.0High risk362026-05-30
v0.47.1-0.20260528185306-6e03da2affb7Review362026-05-30
v0.47.0Review362026-05-30

Block this in CI

PkgRadar gates github.com/AitorConS/unikernel-engine (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/AitorConS/[email protected]