Go modules · proxy.golang.org
github.com/awslabs/ferret-scan
Shipped Live Secret, Remote Payload, Credential file access
Why PkgRadar flagged v1.8.5-0.20260625134501-8aa081d7781e
| Severity | Signal | Evidence |
|---|---|---|
| high | Shipped Live Secret | — |
| medium | Remote Payload | — |
| medium | Remote Payload | — |
| medium | Remote Payload | — |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v1.8.5-0.20260625134501-8aa081d7781e | High risk | 92 | 2026-06-26 |
v1.8.4 | High risk | 92 | 2026-06-26 |
Block this in CI
pkgradar gate --ecosystem go github.com/awslabs/[email protected]