PkgRadar

Go modules · proxy.golang.org

github.com/jetstack-experimental/cert-manager

Tls Verification Disabled: matched "InsecureSkipVerify: true"

Why PkgRadar flagged v0.0.0-20260619223037-dbc027ee2a7d

SeveritySignalEvidence
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/jetstack-experimental/[email protected]/pkg/issuer/acme/http/http.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.0.0-20260619223037-dbc027ee2a7dReview122026-06-20
v0.0.0-20260619211736-6c9253775a06Review122026-06-20
v1.21.0-alpha.1.0.20260619200636-fd3d831d5d75Review122026-06-20
v0.0.0-20260619200636-fd3d831d5d75Review122026-06-20
v1.21.0-alpha.1.0.20260618212435-1fe38ad9178cLow risk02026-06-19
v1.21.0-alpha.1.0.20260618091635-4bf02dc6db86Low risk02026-06-19
v0.0.0-20260618091635-4bf02dc6db86Low risk02026-06-19
v0.0.0-20260617102834-437fed600b59Low risk02026-06-18
v1.21.0-alpha.1.0.20260616184433-9d7df4f8b79cLow risk02026-06-18
v0.0.0-20260616184433-9d7df4f8b79cLow risk02026-06-18
v1.21.0-alpha.1.0.20260616172133-919de80dcd62Low risk02026-06-17
v0.0.0-20260616172133-919de80dcd62Low risk02026-06-17
v1.21.0-alpha.1.0.20260616035933-64a2ddf04b21Low risk02026-06-17
v0.0.0-20260616035933-64a2ddf04b21Low risk02026-06-17
v0.0.0-20260615183332-fc5f570df4bdLow risk02026-06-16
v1.21.0-alpha.1.0.20260615175940-f368f56b59a7Low risk02026-06-16
v0.0.0-20260615172932-4c8ebab9ba9dLow risk02026-06-16
v1.21.0-alpha.1.0.20260613085530-950538a53e7aLow risk02026-06-14
v0.0.0-20260613085530-950538a53e7aLow risk02026-06-14
v1.21.0-alpha.1.0.20260612220105-958e319b729eLow risk02026-06-13
v0.0.0-20260612220105-958e319b729eLow risk02026-06-13
v1.21.0-alpha.1.0.20260612080603-95120a899e2dLow risk02026-06-13
v0.0.0-20260612080603-95120a899e2dLow risk02026-06-13
v0.0.0-20260611183502-77442e96f3c5Low risk02026-06-12
v1.21.0-alpha.1.0.20260608180804-438258c0ffc4Low risk02026-06-09
v0.0.0-20260608180804-438258c0ffc4Low risk02026-06-09
v1.21.0-alpha.1.0.20260608012003-5d49c5cc2e94Low risk02026-06-09
v0.0.0-20260608012003-5d49c5cc2e94Low risk02026-06-09
v1.21.0-alpha.1.0.20260607012002-456babab52edLow risk02026-06-08
v0.0.0-20260607012002-456babab52edLow risk02026-06-08
v1.21.0-alpha.1.0.20260606160801-30e61f6a2839Low risk02026-06-07
v0.0.0-20260606160801-30e61f6a2839Low risk02026-06-07
v0.0.0-20260605161132-ae2ae8b9b0efLow risk02026-06-06
v1.21.0-alpha.1.0.20260605011509-59c5f5361a5bLow risk02026-06-06
v0.0.0-20260605011509-59c5f5361a5bLow risk02026-06-06
v1.21.0-alpha.0.0.20260604060707-5c8a45536503Low risk02026-06-05
v0.0.0-20260604060707-5c8a45536503Low risk02026-06-05
v1.21.0-alpha.0.0.20260604012907-5342974644c0Low risk02026-06-05
v0.0.0-20260604012907-5342974644c0Low risk02026-06-05
v1.21.0-alpha.0.0.20260603085414-7dc980ba44e0Low risk02026-06-04
v0.0.0-20260601043002-db36fd89a3c6Low risk02026-06-02
v1.21.0-alpha.0.0.20260531102602-c43a6bd29b8dLow risk02026-06-01
v0.0.0-20260531102602-c43a6bd29b8dLow risk02026-06-01
v1.21.0-alpha.0.0.20260528075341-ac10078f8fb1Low risk02026-05-30
v0.0.0-20260528075341-ac10078f8fb1Low risk02026-05-30
v0.0.0-20260529141003-77e2f5dbe2b1Low risk02026-05-30
v1.21.0-alpha.0.0.20260529014242-1ea4e0ccf03dLow risk02026-05-30
v0.0.0-20260529014242-1ea4e0ccf03dLow risk02026-05-30
v1.21.0-alpha.0.0.20260528215641-5e2a9f257f37Low risk02026-05-30
v0.0.0-20260528215641-5e2a9f257f37Low risk02026-05-30
v1.21.0-alpha.0.0.20260528200743-97ab9d6272deLow risk02026-05-29
v0.0.0-20260528164942-ead2dd671e88Low risk02026-05-29

Block this in CI

PkgRadar gates github.com/jetstack-experimental/cert-manager (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/jetstack-experimental/[email protected]