PkgRadar

Maven · repo1.maven.org

io.github.shafthq:shaft-pilot-core

Java Process Spawn

Why PkgRadar flagged 10.2.20260628

SeveritySignalEvidence
mediumJava Process Spawn

Showing signal labels only. Sign in to view the exact matched indicators for each finding.

Scanned versions

VersionVerdictScoreScanned (UTC)
10.2.20260628Review152026-06-28
10.2.20260627Low risk02026-06-28
10.2.20260623Low risk02026-06-23
10.2.20260622Low risk02026-06-22
10.2.20260621Low risk02026-06-21
10.2.20260620Low risk02026-06-19
10.2.20260618Low risk02026-06-18
10.2.20260617Low risk02026-06-17
10.2.20260616Low risk02026-06-15
10.2.20260615Low risk02026-06-15
10.2.20260614Low risk02026-06-14
10.2.20260612Low risk02026-06-12

Block this in CI

PkgRadar gates io.github.shafthq:shaft-pilot-core (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem maven io.github.shafthq:[email protected]
io.github.shafthq:shaft-pilot-core — Maven security scan | PkgRadar