PkgRadar

Go modules · proxy.golang.org

github.com/siderolabs/omni

Tls Verification Disabled: matched "InsecureSkipVerify: true"

Why PkgRadar flagged v1.9.0-beta.0.0.20260619161350-498e8c0b4217

SeveritySignalEvidence
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/siderolabs/[email protected]/internal/backend/grpc/management.go
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/siderolabs/[email protected]/internal/backend/grpc/router/router.go
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/siderolabs/[email protected]/internal/backend/runtime/omni/controllers/helpers/helpers.go
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/siderolabs/[email protected]/internal/backend/runtime/omni/controllers/omni/etcdbackup/store/s3store.go
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/siderolabs/[email protected]/internal/backend/runtime/omni/controllers/omni/internal/task/machine/machine.go
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/siderolabs/[email protected]/internal/backend/runtime/omni/controllers/omni/internal/task/snapshot/snapshot.go
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/siderolabs/[email protected]/internal/backend/runtime/omni/controllers/omni/machineconfig/status.go
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/siderolabs/[email protected]/internal/backend/runtime/omni/controllers/omni/machineupgrade/clients.go
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/siderolabs/[email protected]/internal/backend/runtime/talos/clients.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v1.9.0-beta.0.0.20260619161350-498e8c0b4217Review502026-06-20
v1.9.0-beta.0Review502026-06-20
v1.8.0-beta.1.0.20260616181556-d77ee0495299Low risk02026-06-17
v1.8.0-beta.1.0.20260605102248-4db447046921Low risk02026-06-06
v1.8.2Low risk02026-06-06
v1.8.0-beta.1.0.20260529113325-2bfe8c08a1cfLow risk02026-05-30
v1.8.1Low risk02026-05-30

Block this in CI

PkgRadar gates github.com/siderolabs/omni (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/siderolabs/[email protected]