PkgRadar

Go modules · proxy.golang.org

github.com/codesphere-cloud/oms

Remote Payload: matched "raw.githubusercontent.com"

Why PkgRadar flagged v1.195.0

SeveritySignalEvidence
mediumRemote Payloadmatched "raw.githubusercontent.com" · github.com/codesphere-cloud/[email protected]/internal/bootstrap/gcp/gcp.go
mediumRemote Payloadmatched "cUrl " · github.com/codesphere-cloud/[email protected]/internal/installer/files/bom_json.go
mediumRemote Payloadmatched "github.com/k0sproject/k0s/releases/download" · github.com/codesphere-cloud/[email protected]/internal/installer/k0s.go
mediumRemote Payloadmatched "github.com/k0sproject/k0sctl/releases/download" · github.com/codesphere-cloud/[email protected]/internal/installer/k0sctl.go
mediumRemote Payloadmatched "wget " · github.com/codesphere-cloud/[email protected]/internal/installer/node/node.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v1.195.0High risk902026-06-17
v1.196.0High risk902026-06-17
v1.197.0High risk952026-06-17
v1.192.0High risk902026-06-14
v1.187.0High risk902026-06-14
v1.191.0High risk902026-06-13
v1.189.0High risk902026-06-13
v1.183.0High risk902026-06-12
v1.184.0High risk902026-06-12
v1.185.0High risk902026-06-12
v1.180.0High risk902026-06-10
v1.181.0High risk902026-06-10
v1.179.0High risk902026-06-10
v1.182.0High risk902026-06-10
v1.178.1High risk902026-06-06
v1.178.0High risk902026-06-04
v1.177.0High risk902026-06-03
v1.176.0High risk902026-05-31
v1.173.0Review902026-05-29
v1.175.0Review902026-05-29

Block this in CI

PkgRadar gates github.com/codesphere-cloud/oms (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/codesphere-cloud/[email protected]