PkgRadar

Go modules · proxy.golang.org

github.com/andig/evcc

Tls Verification Disabled: matched "InsecureSkipVerify: true"

Why PkgRadar flagged v0.0.0-20260618143704-e5b9a014c5f5

SeveritySignalEvidence
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/andig/[email protected]/cmd/detect/tasks/sma.go
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/andig/[email protected]/server/socket.go
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/andig/[email protected]/util/transport/default.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.0.0-20260618143704-e5b9a014c5f5Review362026-06-20
v0.0.0-20260618102050-0c9afa1ace1cLow risk02026-06-19
v0.0.0-20260617194509-1056e85af283Low risk02026-06-19
v0.0.0-20260616164659-11f7ef5185d6Low risk02026-06-17
v0.0.0-20260615075530-33d9c3bddba1Low risk02026-06-16
v0.0.0-20260615050852-bcd75510d0eeLow risk02026-06-16
v0.0.0-20260614205227-81a84fcf812bLow risk02026-06-15
v0.0.0-20260614161543-cae5e6608544Low risk02026-06-15
v0.0.0-20260614152544-18609ee87436Low risk02026-06-15
v0.0.0-20260614145348-efc57ed702f5Low risk02026-06-15
v0.0.0-20260614143856-41e893e0238cLow risk02026-06-15
v0.0.0-20260614141535-fc34535d1547Low risk02026-06-15
v0.0.0-20260613221652-e10b95f44312Low risk02026-06-15
v0.0.0-20260613155750-fe07ea7cea9cLow risk02026-06-14
v0.0.0-20260613134908-3aac67bdd0f6Low risk02026-06-14
v0.0.0-20260613090915-61ecae015685Low risk02026-06-14
v0.0.0-20260610235124-ee8cb8db06dcLow risk02026-06-13
v0.0.0-20260609084106-7d4e57ed3861Low risk02026-06-10
v0.0.0-20260608170641-6f7b689322d8Low risk02026-06-10
v0.0.0-20260608100718-bfb55dc2c4cdLow risk02026-06-09
v0.0.0-20260607195221-7be56a0ce4c5Low risk02026-06-09
v0.0.0-20210505194233-210d0d7ce2bcLow risk02026-06-06
v0.0.0-20260605160125-10001574c1efLow risk02026-06-06
v0.0.0-20260603134056-416eb0063274Low risk02026-06-04
v0.0.0-20260601222902-42f4281e6884Low risk02026-06-03
v0.0.0-20260529112924-24e0e1044338Low risk02026-05-31
v0.0.0-20260528121321-8ea620d36844Low risk02026-05-30

Block this in CI

PkgRadar gates github.com/andig/evcc (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/andig/[email protected]