PkgRadar

PyPI · pypi.org

agentic-kanban

Remote Payload: matched "curl "

Why PkgRadar flagged 1.1.3

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · internal/session/claude_settings.go

Scanned versions

VersionVerdictScoreScanned (UTC)
1.1.3Review122026-06-04
1.1.2Review122026-06-02
1.1.1Review122026-06-02
1.1.0Review122026-06-02
1.0.14Review122026-06-02
1.0.13Review122026-06-02
1.0.12Review122026-06-02
1.0.11Review172026-05-29
1.0.10Review172026-05-29

Block this in CI

PkgRadar gates agentic-kanban (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi agentic-kanban==1.1.3