PkgRadar

RubyGems · rubygems.org

cocoapods-meitu-bin

Remote Payload: matched "curl "

Why PkgRadar flagged 3.0.5

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · lib/cocoapods-meitu-bin/command/bin/upload.rb
mediumRemote Payloadmatched "curl " · lib/cocoapods-meitu-bin/helpers/buildAll/zip_file_helper.rb
mediumRemote Payloadmatched "curl " · lib/cocoapods-meitu-bin/source_provider_hook.rb

Scanned versions

VersionVerdictScoreScanned (UTC)
3.0.5High risk182026-06-08

Block this in CI

PkgRadar gates cocoapods-meitu-bin (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem rubygems [email protected]