PkgRadar

Go modules · proxy.golang.org

github.com/openshift/managed-upgrade-operator

Remote Payload

Why PkgRadar flagged v0.0.0-20220908073952-c2715a0d07ab

SeveritySignalEvidence
mediumRemote Payloadgithub.com/openshift/[email protected]/go.sum

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.0.0-20220908073952-c2715a0d07abReview122026-06-24
v0.0.0-20260623042930-cc3a60984572Low risk02026-06-24
v0.0.0-20260622041827-8a7ee4393d6eLow risk02026-06-23
v0.0.0-20260619045849-0655ef036edaLow risk02026-06-20
v0.0.0-20260618042210-154f92d8be20Low risk02026-06-19
v0.0.0-20260610013431-73626c95b1ffLow risk02026-06-11
v0.0.0-20260605043328-f636f4356fb6Low risk02026-06-06
v0.0.0-20260605035359-81fc2f8b5571Low risk02026-06-06
v0.0.0-20260528050134-35338f3ccd7dLow risk02026-05-30
v0.0.0-20260528002324-3710cbfb482aLow risk02026-05-30

Block this in CI

PkgRadar gates github.com/openshift/managed-upgrade-operator (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/openshift/[email protected]