PkgRadar

Go modules · proxy.golang.org

github.com/taylorono/go-lib

Tls Verification Disabled: matched "InsecureSkipVerify: true"

Why PkgRadar flagged v0.0.0-20260619171702-970be8f6b7ed

SeveritySignalEvidence
mediumTls Verification Disabledmatched "InsecureSkipVerify: true" · github.com/taylorono/[email protected]/rest/builder.go

Scanned versions

VersionVerdictScoreScanned (UTC)
v0.0.0-20260619171702-970be8f6b7edReview122026-06-20
v0.0.0-20260531144503-84345990e99aLow risk02026-06-01
v0.0.0-20260530230457-5405f9628d89Low risk02026-06-01

Block this in CI

PkgRadar gates github.com/taylorono/go-lib (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem go github.com/taylorono/[email protected]