PkgRadar

RubyGems · rubygems.org

relaton-w3c

Rb Install Time Network Call: Network call (Net::HTTP / URI.open / HTTParty / Faraday / RestClient) at install time.

Why PkgRadar flagged 2.1.4

SeveritySignalEvidence
highRb Install Time Network CallNetwork call (Net::HTTP / URI.open / HTTParty / Faraday / RestClient) at install time. · Rakefile
mediumRemote Payloadmatched "raw.githubusercontent.com" · Rakefile
mediumRemote Payloadmatched "raw.githubusercontent.com" · lib/relaton/w3c/bibliography.rb

Scanned versions

VersionVerdictScoreScanned (UTC)
2.1.4High risk302026-06-04
2.1.3High risk302026-06-03

Block this in CI

PkgRadar gates relaton-w3c (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem rubygems [email protected]