Go modules · proxy.golang.org
github.com/kubernetes-sigs/release-utils
Go Generate Shell, Remote Payload
Why PkgRadar flagged v0.12.5-0.20260603091749-656fab2eca71
| Severity | Signal | Evidence |
|---|---|---|
| medium | Go Generate Shell | github.com/kubernetes-sigs/[email protected]/env/internal/impl.go |
| medium | Go Generate Shell | github.com/kubernetes-sigs/[email protected]/http/agent.go |
| medium | Remote Payload | github.com/kubernetes-sigs/[email protected]/mage/boilerplate.go |
| medium | Remote Payload | github.com/kubernetes-sigs/[email protected]/mage/cosign.go |
| medium | Remote Payload | github.com/kubernetes-sigs/[email protected]/mage/golangci-lint.go |
| medium | Remote Payload | github.com/kubernetes-sigs/[email protected]/mage/ko.go |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v0.12.5-0.20260603091749-656fab2eca71 | Review | 54 | 2026-06-22 |
Block this in CI
pkgradar gate --ecosystem go github.com/kubernetes-sigs/[email protected]