PkgRadar

Go modules · proxy.golang.org

github.com/iampritam97/gxs-scanner/v2

DNS / OAST exfiltration: matched "burpcollaborator.net"

Why PkgRadar flagged v2.0.1

SeveritySignalEvidence
highDNS / OAST exfiltrationmatched "burpcollaborator.net" · github.com/iampritam97/gxs-scanner/[email protected]/main.go
mediumRemote Payloadmatched "curl " · github.com/iampritam97/gxs-scanner/[email protected]/ssti.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v2.0.1High risk422026-05-30
v2.0.0High risk422026-05-30

Block this in CI

PkgRadar gates github.com/iampritam97/gxs-scanner/v2 (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/iampritam97/gxs-scanner/[email protected]