PkgRadar

Go modules · proxy.golang.org

github.com/fulcrum-governance/fulcrum-boundary

Remote Payload: matched "curl "

Why PkgRadar flagged v0.11.1-0.20260612041856-02ba708184f0

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · github.com/fulcrum-governance/[email protected]/internal/redteam/edit_packs.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.11.1-0.20260612041856-02ba708184f0Review272026-06-13
v0.10.0Review272026-06-12
v0.8.0Review272026-06-03
v0.6.0Review272026-05-30
v0.6.1Review272026-05-29

Block this in CI

PkgRadar gates github.com/fulcrum-governance/fulcrum-boundary (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/fulcrum-governance/[email protected]