PkgRadar

PyPI · pypi.org

anitya

Py Import Time Network Call: Network call (urllib/requests/httpx/http.client) at install or import time.

Why PkgRadar flagged 2.2.1

SeveritySignalEvidence
highPy Import Time Network CallNetwork call (urllib/requests/httpx/http.client) at install or import time. · anitya-2.2.1/anitya/lib/backends/__init__.py

Scanned versions

VersionVerdictScoreScanned (UTC)
2.2.1High risk82026-06-11
2.2.0High risk82026-06-10

Block this in CI

PkgRadar gates anitya (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi anitya==2.2.1