PkgRadar

Go modules · proxy.golang.org

github.com/patriceckhart/zot

Remote Payload: matched "raw.githubusercontent.com"

Why PkgRadar flagged v0.2.23

SeveritySignalEvidence
mediumRemote Payloadmatched "raw.githubusercontent.com" · github.com/patriceckhart/[email protected]/packages/agent/modes/interactive.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.2.23Review222026-06-12
v0.2.26Review222026-06-11
v0.2.17Review222026-06-09
v0.2.18Review222026-06-09
v0.2.16Review222026-06-09
v0.2.15Review222026-06-08
v0.2.12Review222026-06-08
v0.2.10Review102026-06-05
v0.2.11Review102026-06-05
v0.2.9Review102026-06-05
v0.2.8Review102026-06-04
v0.2.7Review102026-06-01
v0.2.4Review102026-05-31
v0.2.6Review102026-05-31
v0.2.5Review102026-05-31
v0.2.3Review102026-05-30
v0.2.1Review102026-05-30

Block this in CI

PkgRadar gates github.com/patriceckhart/zot (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/patriceckhart/[email protected]