PkgRadar

PyPI · pypi.org

an-website

Credential File Packaged: an_website-26.6/an_website/static/.env

Why PkgRadar flagged 26.6

SeveritySignalEvidence
highCredential File Packagedan_website-26.6/an_website/static/.env · an_website-26.6/an_website/static/.env
mediumRemote Payloadmatched "curl " · an_website-26.6/an_website/quotes/edit.sh

Scanned versions

VersionVerdictScoreScanned (UTC)
26.6High risk262026-06-01

Block this in CI

PkgRadar gates an-website (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi an-website==26.6