PkgRadar

PyPI · pypi.org

aqora

Credential File Packaged: aqora-0.26.0rc3/template/assets/use_case/template/.env

Why PkgRadar flagged 0.26.0rc3

SeveritySignalEvidence
highCredential File Packagedaqora-0.26.0rc3/template/assets/use_case/template/.env · aqora-0.26.0rc3/template/assets/use_case/template/.env

Scanned versions

VersionVerdictScoreScanned (UTC)
0.26.0rc3High risk352026-06-12
0.26.0rc2High risk352026-06-12
0.26.0rc1High risk352026-06-11
0.25.4High risk352026-06-09
0.26.0.dev2High risk352026-05-30
0.25.3High risk352026-05-30
0.25.2High risk352026-05-30

Block this in CI

PkgRadar gates aqora (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi aqora==0.26.0rc3