PyPI · pypi.org
bspctl
Py Runtime Subprocess: subprocess call — process spawning.
Why PkgRadar flagged 0.4.0
| Severity | Signal | Evidence |
|---|---|---|
| medium | Py Runtime Subprocess | subprocess call — process spawning. · bspctl-0.4.0/src/bspctl/diagnostics.py |
| medium | Py Runtime Subprocess | subprocess call — process spawning. · bspctl-0.4.0/src/bspctl/layers.py |
| medium | Py Runtime Subprocess | subprocess call — process spawning. · bspctl-0.4.0/src/bspctl/steps/bitbake_override.py |
| medium | Py Runtime Subprocess | subprocess call — process spawning. · bspctl-0.4.0/src/bspctl/steps/kas_build.py |
| medium | Py Runtime Subprocess | subprocess call — process spawning. · bspctl-0.4.0/src/bspctl/steps/repo.py |
| medium | Py Runtime Subprocess | subprocess call — process spawning. · bspctl-0.4.0/src/bspctl/steps/run_qemu.py |
| medium | Py Runtime Subprocess | subprocess call — process spawning. · bspctl-0.4.0/src/bspctl/steps/setup_env.py |
| medium | Py Runtime Subprocess | subprocess call — process spawning. · bspctl-0.4.0/src/bspctl/steps/ti_layertool.py |
| medium | Py Runtime Subprocess | subprocess call — process spawning. · bspctl-0.4.0/src/bspctl/workspace.py |
| medium | Py Custom Build Backend | Non-standard PEP 517 build-backend `uv_build` — runs custom code at install time. · pyproject.toml |
| medium | Remote Payload | matched "wget " · bspctl-0.4.0/src/bspctl/overlays/bspctl-tuning-ti.yml |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.4.0 | High risk | 77 | 2026-05-26 |
Block this in CI
pkgradar gate --ecosystem pypi bspctl==0.4.0