pkg.go.dev package intelligence

google.golang.org/grpc — deep security report

ShadowCanopy's full breakdown of google.golang.org/grpc on pkg.go.dev: verdict, AI analysis, dependency chain, network behavior, prebuilds, and obfuscated code.

Not scanned yet
Run a free deep scan to analyze this package's code, dependency chain, and network behavior.
Unscannedgoogle.golang.org/grpc@v1.84.0View on registry ↗latest: v1.84.0

This package has not been deep-scanned yet. Run a free scan to analyze its contents, dependency chain, network behavior, and any obfuscated code.

Protect your projects free

Known vulnerabilities (2)

Published CVEs / advisories affecting this version.

GHSA-2v4p-qf9q-27wjHIGH

gRPC-Go xDS servers: Denial of Service (DoS) via crash due to missing `:authority` and `Host` headers

GO-2026-6443UNKNOWN

Server panic via missing authority or Host headers in google.golang.org/grpc

How ShadowCanopy checks pkg.go.dev packages

ShadowCanopy blocks every dependency by default and only lets through what it can verify — against live malicious-package advisories, an AI behavior scan, and a byte-for-byte hash check. It protects installs across npm, PyPI, crates.io, pkg.go.dev, RubyGems, Maven Central, NuGet, Packagist, Hex, pub.dev, Swift Package Manager.

Protect your projects freeSee what's being blocked

This report reflects ShadowCanopy's threat intelligence at page load and is informational, not a warranty. Canonical URL: https://shadowcanopy.dev/packages/go/google.golang.org/grpc