PkgRadar

PyPI · pypi.org

backend-ai-agent

Credential file access: matched "AWS_ACCESS_KEY"

Why PkgRadar flagged 26.4.4rc8

SeveritySignalEvidence
mediumCredential file accessmatched "AWS_ACCESS_KEY" · backend_ai_agent-26.4.4rc8/ai/backend/agent/docker/files.py
mediumCredential file accessmatched "AWS_ACCESS_KEY" · backend_ai_agent-26.4.4rc8/ai/backend/agent/kubernetes/files.py

Scanned versions

VersionVerdictScoreScanned (UTC)
26.4.4rc8Review102026-06-11
26.4.4rc7Review102026-06-10

Block this in CI

PkgRadar gates backend-ai-agent (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi backend-ai-agent==26.4.4rc8