PkgRadar

Go modules · proxy.golang.org

github.com/go-skynet/LocalAI

Remote Payload: matched "github.com/%s/%s/releases/download"

Why PkgRadar flagged v1.40.1-0.20260615205738-23886863690c

SeveritySignalEvidence
mediumRemote Payloadmatched "github.com/%s/%s/releases/download" · github.com/go-skynet/[email protected]/cmd/launcher/internal/release_manager.go
mediumRemote Payloadmatched "raw.githubusercontent.com" · github.com/go-skynet/[email protected]/core/config/gen_inference_defaults/main.go
mediumRemote Payloadmatched "raw.githubusercontent.com" · github.com/go-skynet/[email protected]/pkg/downloader/uri.go
mediumRemote Payloadmatched "raw.githubusercontent.com" · github.com/go-skynet/[email protected]/swagger/docs.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v1.40.1-0.20260615205738-23886863690cHigh risk482026-06-17
v0.0.0-20260615205738-23886863690cHigh risk482026-06-17
v0.0.0-20260614195325-f648f07b1379High risk482026-06-16
v1.40.1-0.20260614195325-f648f07b1379High risk482026-06-16
v1.40.1-0.20260614163344-1dedb5277c4bHigh risk482026-06-15
v0.0.0-20260614163344-1dedb5277c4bHigh risk482026-06-15
v1.40.1-0.20260614144649-61cde6fd7707High risk482026-06-15
v0.0.0-20260614144649-61cde6fd7707High risk482026-06-15
v1.40.1-0.20260613215427-4d3d54d61b08High risk482026-06-14
v0.0.0-20260613215427-4d3d54d61b08High risk482026-06-14
v0.0.0-20260613163106-7637f8cf1b17High risk482026-06-14
v1.40.1-0.20260613161306-f0e001b7f83fHigh risk482026-06-14
v0.0.0-20260613090521-e1556aa1dc56High risk482026-06-14
v1.40.1-0.20260613090521-e1556aa1dc56High risk482026-06-14
v1.40.1-0.20260612211844-51f4f67c470fHigh risk482026-06-13
v0.0.0-20260612125907-56cc4f63fc76High risk482026-06-13
v0.0.0-20260612080858-1cea96f09f14High risk482026-06-13
v1.40.1-0.20260611215700-58cdc050e9b7High risk482026-06-13
v0.0.0-20260611215700-58cdc050e9b7High risk482026-06-13
v1.40.1-0.20260610221034-51a92b6093c7High risk482026-06-11
v1.40.1-0.20260609231629-bf448d379420High risk482026-06-11
v0.0.0-20260609231629-bf448d379420High risk482026-06-11
v1.40.1-0.20260608140119-c20225fc132dHigh risk482026-06-09
v0.0.0-20260608140119-c20225fc132dHigh risk482026-06-09
v1.40.1-0.20260608091532-337acc4c377dHigh risk482026-06-09
v0.0.0-20260608091532-337acc4c377dHigh risk482026-06-09
v1.40.1-0.20260605134543-e837921c2cd4High risk482026-06-06
v1.40.1-0.20260603223215-9f11b09c6abcHigh risk482026-06-05
v0.0.0-20260603223215-9f11b09c6abcHigh risk482026-06-05
v1.40.1-0.20260603083843-5470051d4d0bHigh risk482026-06-04
v0.0.0-20260603083843-5470051d4d0bHigh risk482026-06-04
v1.40.1-0.20260602200533-415b56194752High risk482026-06-03
v0.0.0-20260602200533-415b56194752High risk482026-06-03
v0.0.0-20260602164812-e6a0d4c375adHigh risk482026-06-03
v0.0.0-20260602153443-aea954a482daHigh risk482026-06-03
v0.0.0-20260602135223-595e4487148bHigh risk482026-06-03
v0.0.0-20260602124902-860f9d63adefHigh risk482026-06-03
v1.40.1-0.20260602070635-35bd485d6a0fHigh risk482026-06-03
v0.0.0-20260602070635-35bd485d6a0fHigh risk482026-06-03
v1.40.1-0.20260531110220-c222161291f9High risk482026-06-01
v0.0.0-20260531110220-c222161291f9High risk482026-06-01
v1.40.1-0.20260528072148-0fd666ee6e70High risk482026-05-30
v0.0.0-20260528072148-0fd666ee6e70High risk482026-05-30
v1.40.1-0.20260528153754-1c92b0091889Review482026-05-30
v0.0.0-20260528153754-1c92b0091889Review482026-05-30

Block this in CI

PkgRadar gates github.com/go-skynet/LocalAI (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/go-skynet/[email protected]