PkgRadar

RubyGems · rubygems.org

aikido-zen

Remote Payload: matched "curl "

Why PkgRadar flagged 1.4.1

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · lib/aikido/zen/scanners/shell_injection/helpers.rb
mediumRemote Payloadmatched "Curl\n " · lib/aikido/zen/sinks/curb.rb
mediumRemote Payloadmatched "curl " · tasklib/wrk.rb

Scanned versions

VersionVerdictScoreScanned (UTC)
1.4.1Review202026-05-29

Block this in CI

PkgRadar gates aikido-zen (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem rubygems [email protected]