PkgRadar

Go modules · proxy.golang.org

github.com/FabianSchurig/bitbucket-cli

Remote Payload: matched "curl "

Why PkgRadar flagged v0.16.4

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · github.com/fabianschurig/[email protected]/internal/commands/addon.gen.go
mediumRemote Payloadmatched "curl " · github.com/fabianschurig/[email protected]/internal/commands/commands.gen.go
mediumRemote Payloadmatched "curl " · github.com/fabianschurig/[email protected]/internal/commands/commit-statuses.gen.go
mediumRemote Payloadmatched "curl " · github.com/fabianschurig/[email protected]/internal/commands/commits.gen.go
mediumRemote Payloadmatched "curl " · github.com/fabianschurig/[email protected]/internal/commands/deployments.gen.go
mediumRemote Payloadmatched "curl " · github.com/fabianschurig/[email protected]/internal/commands/downloads.gen.go
mediumRemote Payloadmatched "curl " · github.com/fabianschurig/[email protected]/internal/commands/hooks.gen.go
mediumRemote Payloadmatched "curl " · github.com/fabianschurig/[email protected]/internal/commands/issues.gen.go
mediumRemote Payloadmatched "curl " · github.com/fabianschurig/[email protected]/internal/commands/pipelines.gen.go
mediumRemote Payloadmatched "curl " · github.com/fabianschurig/[email protected]/internal/commands/projects.gen.go
mediumRemote Payloadmatched "curl " · github.com/fabianschurig/[email protected]/internal/commands/refs.gen.go
mediumRemote Payloadmatched "cURL " · github.com/fabianschurig/[email protected]/internal/commands/reports.gen.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.16.4High risk982026-06-07
v0.16.3High risk982026-06-02

Block this in CI

PkgRadar gates github.com/FabianSchurig/bitbucket-cli (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/FabianSchurig/[email protected]