PkgRadar

PyPI · pypi.org

agent-borg

Py Import Time Compile Exec: Python exec(compile(...)) — typical obfuscated loader pattern.

Why PkgRadar flagged 3.3.20

SeveritySignalEvidence
highPy Import Time Compile ExecPython exec(compile(...)) — typical obfuscated loader pattern. · agent_borg-3.3.20/borg/cli/__init__.py

Scanned versions

VersionVerdictScoreScanned (UTC)
3.3.20High risk762026-06-12
3.3.19High risk712026-06-10
3.3.18High risk712026-06-03
3.3.17High risk712026-06-03
3.3.16High risk712026-06-02
3.3.15High risk712026-05-30

Block this in CI

PkgRadar gates agent-borg (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi agent-borg==3.3.20