Go modules · proxy.golang.org
github.com/sapcc/hermes
Tls Verification Disabled: matched "InsecureSkipVerify: true"
Why PkgRadar flagged v0.0.0-20260618190104-396623dd48c1
| Severity | Signal | Evidence |
|---|---|---|
| medium | Tls Verification Disabled | matched "InsecureSkipVerify: true" · github.com/sapcc/[email protected]/pkg/util/hacks.go |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
v0.0.0-20260618190104-396623dd48c1 | Review | 12 | 2026-06-20 |
v0.0.0-20260611190319-b28ddddb6126 | Low risk | 0 | 2026-06-13 |
v0.0.0-20260604190528-0bfcae7b6b18 | Low risk | 0 | 2026-06-05 |
v0.0.0-20260604142321-6d5bd1a82f8b | Low risk | 0 | 2026-06-05 |
v0.0.0-20260529163311-1dbe65b0b4e6 | Low risk | 0 | 2026-05-30 |
v0.0.0-20260529151424-7816177cc607 | Low risk | 0 | 2026-05-30 |
v0.0.0-20260528190216-29613bf0a204 | Low risk | 0 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem go github.com/sapcc/[email protected]