Go modules · proxy.golang.org
github.com/burdiyan/boxo
Shell Credential File Read
Why PkgRadar flagged v0.35.2
| Severity | Signal | Evidence |
|---|---|---|
| high | Shell Credential File Read | — |
| high | Shell Credential File Read | — |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v0.35.2 | High risk | 90 | 2026-06-29 |
v0.16.0 | High risk | 90 | 2026-06-29 |
v0.35.3-0.20251207143202-03fe9390e13c | High risk | 90 | 2026-06-29 |
Block this in CI
pkgradar gate --ecosystem go github.com/burdiyan/[email protected]