drift-testing

Warn

Audited by Snyk on Apr 14, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).

  • Potentially malicious external URL detected (high risk: 0.90). The repository includes CI/install commands that fetch and extract a remote binary at runtime (wget -O
  • https://download.pactflow.io/drift/latest/linux-x86_64.tgz | tar xz -C /usr/local/bin), which downloads and installs executable code that will be run (drift), so it is a runtime external dependency that executes remote code.

Issues (1)

W012
MEDIUM

Unverifiable external dependency detected (runtime URL that controls agent).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 14, 2026, 06:33 PM
Issues
1