PkgRadar

PyPI · pypi.org

bedrock-converse

Credential file access: matched ".aws/"

Why PkgRadar flagged 0.3.9

SeveritySignalEvidence
mediumCredential file accessmatched ".aws/" · bedrock_converse-0.3.9/src/bedrock/mantle.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.3.9Review202026-06-08
0.3.8Review202026-06-07
0.3.7Review202026-06-04
0.3.6Review202026-06-03
0.3.5Review202026-06-01
0.3.4Review202026-06-01
0.3.3Review202026-05-31
0.3.2Review202026-05-31
0.3.1Review202026-05-30
0.3.0Review202026-05-29
0.2.3Review202026-05-29

Block this in CI

PkgRadar gates bedrock-converse (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi bedrock-converse==0.3.9