PkgRadar

Go modules · proxy.golang.org

github.com/bazelbuild/rules_go

Remote Payload

Why PkgRadar flagged v0.33.1-0.20220701170933-e80bb2c02752

SeveritySignalEvidence
mediumRemote Payloadgithub.com/bazelbuild/[email protected]/go/tools/releaser/boilerplate.go
mediumRemote Payloadgithub.com/bazelbuild/[email protected]/go/tools/releaser/prepare.go

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.33.1-0.20220701170933-e80bb2c02752Review242026-06-25
v0.61.1-0.20260623173615-63335b2b8c8aLow risk02026-06-24
v0.0.0-20260623173615-63335b2b8c8aLow risk02026-06-24
v0.61.1-0.20260622185239-92826003d1beLow risk02026-06-24
v0.0.0-20260622185239-92826003d1beLow risk02026-06-24
v0.0.0-20260610212530-370a75048291Low risk02026-06-12
v0.0.0-20180905212959-0f0d007c89dcLow risk02026-06-12
v0.61.1-0.20260610212530-370a75048291Low risk02026-06-12
v0.7.2-0.20171201162332-f80dec788956Low risk02026-06-12
v0.61.1-0.20260608200927-8f974315778dLow risk02026-06-10
v0.61.1-0.20260605082548-9667748a32deLow risk02026-06-06
v0.0.0-20260605082548-9667748a32deLow risk02026-06-06
v0.61.1-0.20260604212935-075fea0f77abLow risk02026-06-06
v0.0.0-20260604212935-075fea0f77abLow risk02026-06-06
v0.61.1-0.20260603125946-c8361e9a6788Low risk02026-06-04
v0.0.0-20260603125946-c8361e9a6788Low risk02026-06-04
v0.61.1-0.20260603091006-2d3c81f26ee9Low risk02026-06-04
v0.61.0Low risk02026-06-02
v0.60.1-0.20260531142741-a6f7272d5838Low risk02026-06-01
v0.0.0-20260531142741-a6f7272d5838Low risk02026-06-01
v0.60.1-0.20260531112401-eae864be66a6Low risk02026-06-01
v0.0.0-20260531112401-eae864be66a6Low risk02026-06-01
v0.0.0-20260529164605-afd648f19231Low risk02026-05-31
v0.60.1-0.20260528211024-3a5559c6e54fLow risk02026-05-30
v0.0.0-20260528211024-3a5559c6e54fLow risk02026-05-30
v0.60.1-0.20260528154123-8952d114093dLow risk02026-05-29
v0.0.0-20260528154123-8952d114093dLow risk02026-05-29

Block this in CI

PkgRadar gates github.com/bazelbuild/rules_go (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/bazelbuild/[email protected]