PkgRadar

RubyGems · rubygems.org

rails-profiler

Remote Payload: matched "Curl "

Why PkgRadar flagged 0.28.0

SeveritySignalEvidence
mediumRemote Payloadmatched "Curl " · lib/profiler/mcp/tools/get_profile_detail.rb
mediumRemote Payloadmatched "curl " · lib/profiler/mcp/tools/get_profile_http.rb

Scanned versions

VersionVerdictScoreScanned (UTC)
0.28.0Review242026-06-06
0.27.1Review242026-06-06
0.26.0Review242026-06-02
0.25.0Review242026-06-01
0.24.0Review242026-06-01
0.23.0Review242026-05-30
0.22.1Review242026-05-30

Block this in CI

PkgRadar gates rails-profiler (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem rubygems [email protected]