PkgRadar

Go modules · proxy.golang.org

github.com/open-edge-platform/edge-manageability-framework

Remote Payload: matched "curl "

Why PkgRadar flagged v0.0.0-20260604093728-2caccfb64484

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · github.com/open-edge-platform/[email protected]/mage/generate.go
mediumRemote Payloadmatched "curl " · github.com/open-edge-platform/[email protected]/on-prem-installers/cmd/onprem-config-installer/main.go
mediumRemote Payloadmatched "github.com/rancher/system-upgrade-controller/releases/download" · github.com/open-edge-platform/[email protected]/on-prem-installers/mage/upgrade.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.0.0-20260604093728-2caccfb64484High risk362026-06-06

Block this in CI

PkgRadar gates github.com/open-edge-platform/edge-manageability-framework (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/open-edge-platform/[email protected]