PkgRadar

PyPI · pypi.org

agentwire-dev

Py Runtime Base64 Decode: base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern.

Why PkgRadar flagged 1.29.5

SeveritySignalEvidence
highPy Runtime Base64 Decodebase64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · agentwire_dev-1.29.5/agentwire/__main__.py
highPy Runtime Base64 Decodebase64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · agentwire_dev-1.29.5/agentwire/mcp_server.py
highPy Runtime Base64 Decodebase64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · agentwire_dev-1.29.5/agentwire/projects.py
mediumRemote Payloadmatched "curl " · agentwire_dev-1.29.5/agentwire/hooks/agentwire-permission.sh

Scanned versions

VersionVerdictScoreScanned (UTC)
1.29.5High risk702026-06-04
1.29.3High risk702026-06-03
1.29.2High risk702026-06-03
1.29.1High risk702026-06-02
1.29.0High risk702026-06-01

Block this in CI

PkgRadar gates agentwire-dev (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi agentwire-dev==1.29.5