PkgRadar

Go modules · proxy.golang.org

github.com/gentleman-programming/gentle-ai

Remote Payload: matched "github.com/Gentleman-Programming/gentle-ai/releases/download"

Why PkgRadar flagged v1.40.3-0.20260615163856-8b2e2cf2479b

SeveritySignalEvidence
mediumRemote Payloadmatched "github.com/Gentleman-Programming/gentle-ai/releases/download" · github.com/gentleman-programming/[email protected]/internal/update/advisory.go
mediumRemote Payloadmatched "curl " · github.com/gentleman-programming/[email protected]/internal/update/instructions.go
mediumRemote Payloadmatched "github.com/%s/%s/releases/download" · github.com/gentleman-programming/[email protected]/internal/update/upgrade/download.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v1.40.3-0.20260615163856-8b2e2cf2479bHigh risk412026-06-17
v1.40.3-0.20260615160124-6a12331663dfHigh risk412026-06-16
v1.40.3-0.20260615121621-7f3c8103aed1High risk412026-06-16
v1.40.3-0.20260614203356-3db523bf01a3High risk412026-06-15
v1.40.3-0.20260614151827-6eff4a1ba110High risk412026-06-15
v1.40.2Review292026-06-14
v1.40.1Review292026-06-14
v1.39.4Review292026-06-13
v1.39.3Review292026-06-13
v1.39.1Review292026-06-12
v1.39.0Review292026-06-12
v1.38.0Review292026-06-12
v1.37.2Review292026-06-11
v1.37.1Review292026-06-11
v1.37.0Review292026-06-10
v1.36.7Review292026-06-09
v1.36.6Review292026-06-07
v1.36.5Review292026-06-06
v1.36.5-0.20260605194028-c45b3d56809aReview292026-06-06
v1.36.4Review292026-06-06
v1.36.3Review292026-06-06
v1.36.2Review292026-06-06
v1.36.0Review292026-06-05
v1.35.0Review292026-06-05
v1.34.2Review292026-06-05
v1.34.2-0.20260604180658-f3c2694094d1Review292026-06-05
v1.34.1Review292026-06-05
v1.34.0Review292026-06-03
v1.33.2Review292026-05-30
v1.33.1Review292026-05-29
v1.33.0Review292026-05-29
v1.32.1-0.20260528074013-1f13b8d6b414Review292026-05-29

Block this in CI

PkgRadar gates github.com/gentleman-programming/gentle-ai (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/gentleman-programming/[email protected]