PkgRadar

Maven · repo1.maven.org

ca.uhn.hapi.fhir:org.hl7.fhir.convertors

Remote Payload: matched "raw.githubusercontent.com"

Why PkgRadar flagged 6.9.10

SeveritySignalEvidence
mediumRemote Payloadmatched "raw.githubusercontent.com" · org/hl7/fhir/convertors/misc/SPDXImporter.java

Scanned versions

VersionVerdictScoreScanned (UTC)
6.9.10Review62026-06-12

Block this in CI

PkgRadar gates ca.uhn.hapi.fhir:org.hl7.fhir.convertors (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem maven ca.uhn.hapi.fhir:[email protected]