Go modules · proxy.golang.org
github.com/paketo-buildpacks/mri/dependency/retrieval
Remote Payload: matched "raw.githubusercontent.com"
Why PkgRadar flagged v0.0.0-20260605231626-22860424896f
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "raw.githubusercontent.com" · github.com/paketo-buildpacks/mri/dependency/[email protected]/components/metadata.go |
| medium | Remote Payload | matched "curl " · github.com/paketo-buildpacks/mri/dependency/[email protected]/go.sum |
| medium | Remote Payload | matched "raw.githubusercontent.com" · github.com/paketo-buildpacks/mri/dependency/[email protected]/main.go |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v0.0.0-20260605231626-22860424896f | High risk | 36 | 2026-06-07 |
Block this in CI
pkgradar gate --ecosystem go github.com/paketo-buildpacks/mri/dependency/[email protected]