PkgRadar

Go modules · proxy.golang.org

github.com/alrubinger/aileron/internal

Go Generate Shell: //go:generate directive shells out to curl/wget/bash — runs during `go generate`.

Why PkgRadar flagged v0.0.0-20260616023216-c2c9b2a613bd

SeveritySignalEvidence
mediumGo Generate Shell//go:generate directive shells out to curl/wget/bash — runs during `go generate`. · github.com/alrubinger/aileron/[email protected]/sandbox/doc.go
mediumRemote Payloadmatched "wget " · github.com/alrubinger/aileron/[email protected]/sandbox/container/runtime.go
mediumRemote Payloadmatched "wget " · github.com/alrubinger/aileron/[email protected]/sandbox/discovery/spec.go
mediumRemote Payloadmatched "wget " · github.com/alrubinger/aileron/[email protected]/sandbox/discovery/tools.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.0.0-20260616031833-c3f373aea019Review152026-06-17
v0.0.0-20260616023216-c2c9b2a613bdHigh risk512026-06-17
v0.0.0-20260616012955-5031b05ab8f0High risk512026-06-17
v0.0.0-20260615031412-6202f28a412cHigh risk512026-06-16
v0.0.0-20260614211424-61c5ffa41337High risk512026-06-15
v0.0.0-20260614182122-d0b2ffed8657High risk512026-06-15
v0.0.0-20260614175900-517297090037High risk512026-06-15
v0.0.0-20260614175752-edf63935311fHigh risk512026-06-15
v0.0.0-20260614165803-ee985ae06154High risk512026-06-15
v0.0.0-20260614035412-5c4e8555ad63High risk512026-06-15
v0.0.0-20260614033807-c41c7bcd4e3bHigh risk512026-06-15
v0.0.0-20260614034645-8a8e5c90066aHigh risk512026-06-15
v0.0.0-20260614031558-0b0b2e670f14High risk512026-06-15
v0.0.0-20260614024035-cec088c680abHigh risk512026-06-15
v0.0.0-20260614024140-a772e018bea4High risk512026-06-15
v0.0.0-20260613161932-de7dcaa13789High risk512026-06-14
v0.0.0-20260613161759-59850c7c2fa7High risk512026-06-14
v0.0.0-20260613075957-6361c0c67198High risk512026-06-14
v0.0.0-20260613060225-4dc3c50d455dHigh risk512026-06-14
v0.0.0-20260613053718-6dae8426333aHigh risk512026-06-14
v0.0.0-20260613001133-a180bd13d6faHigh risk512026-06-14
v0.0.0-20260613000741-fe63379abf5aHigh risk512026-06-14
v0.0.0-20260612224133-8267818ca5cdHigh risk512026-06-13
v0.0.0-20260612203424-9507e1e659f1High risk512026-06-13
v0.0.0-20260612193329-4275ecf05c3aHigh risk512026-06-13
v0.0.0-20260612182958-19d5ade5a073High risk512026-06-13
v0.0.0-20260612083934-b45757bce2dbHigh risk512026-06-13
v0.0.0-20260612083027-1fc6e603f412High risk512026-06-13
v0.0.0-20260612024809-736482a64dceHigh risk512026-06-13
v0.0.0-20260611181111-bbc517264d7eHigh risk512026-06-12
v0.0.0-20260609092412-bdf3e3517154High risk512026-06-10
v0.0.0-20260609053220-2570ba3cefc3High risk512026-06-10
v0.0.0-20260609013123-eb9ad9ca78b4High risk512026-06-10
v0.0.0-20260606090837-792ad9613b57High risk512026-06-07
v0.0.0-20260606091330-8c30aa0f434eHigh risk512026-06-07
v0.0.0-20260606015351-fda5d45f66f0High risk512026-06-07
v0.0.0-20260606003425-78dafc39cdb9High risk512026-06-07
v0.0.0-20260605194104-d4569b716068High risk512026-06-06
v0.0.0-20260605091133-3a23487b0011High risk512026-06-06
v0.0.0-20260605055615-d10616968314High risk512026-06-06
v0.0.0-20260605053455-e03e4e5a8b57High risk512026-06-06
v0.0.0-20260605050039-7550035a77cfHigh risk512026-06-06
v0.0.0-20260603230207-e9ccb25890eeHigh risk512026-06-04
v0.0.0-20260603104856-6dfce1236211High risk512026-06-04
v0.0.0-20260603103535-cc0416ff7d68High risk512026-06-04
v0.0.0-20260603104236-b5526eef77cdHigh risk512026-06-04
v0.0.0-20260603101339-b80940656695High risk512026-06-04
v0.0.0-20260603093613-72ba688403e0High risk512026-06-04
v0.0.0-20260603073251-7ac9a5e452f4High risk512026-06-04
v0.0.0-20260603071834-eede77ced62aHigh risk512026-06-04
v0.0.0-20260603014413-8949d381ee50High risk512026-06-04
v0.0.0-20260602184430-6ceea84fb0ebHigh risk512026-06-03
v0.0.0-20260602043232-2f475384b8eeHigh risk512026-06-03
v0.0.0-20260601234954-0f3a30f0cbf0High risk512026-06-02
v0.0.0-20260601234303-3cfaff8fef71High risk512026-06-02
v0.0.0-20260601221445-3905f5494e4cHigh risk512026-06-02
v0.0.0-20260601185825-d5883691557cReview392026-06-02
v0.0.0-20260601100646-23adfeaa8471Review392026-06-02
v0.0.0-20260601092737-24a2a1b1c874Review392026-06-02
v0.0.0-20260601090059-e57d0eb0215fReview392026-06-02
v0.0.0-20260601041724-2d9457bbe926Review392026-06-02
v0.0.0-20260601040353-7ed755f57bb8Review392026-06-02
v0.0.0-20260531033729-522f6921aee6Review392026-06-01
v0.0.0-20260530203103-a5775cb03a28Review272026-05-31
v0.0.0-20260530015159-f9ab01a8fc4bReview152026-05-31
v0.0.0-20260530011705-38b717a68b8dReview152026-05-31
v0.0.0-20260529105122-2a867fbb6387Review152026-05-30
v0.0.0-20260529102957-f045d411bd61Review152026-05-30
v0.0.0-20260529100532-1f97b5bd6459Review152026-05-30
v0.0.0-20260529094836-c8b3ef957808Review152026-05-30
v0.0.0-20260529091634-30f2b294f373Review152026-05-30
v0.0.0-20260529082102-c953b5eb3a3dReview152026-05-30
v0.0.0-20260528100202-3154aecce599Review442026-05-29
v0.0.0-20260528001933-4612472698e4Review442026-05-29

Block this in CI

PkgRadar gates github.com/alrubinger/aileron/internal (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/alrubinger/aileron/[email protected]