PyPI · pypi.org
classy-ai
Py Import Time Os System: Direct shell invocation via os.system / os.popen / os.exec*.
Why PkgRadar flagged 0.0.18
| Severity | Signal | Evidence |
|---|---|---|
| high | Py Import Time Os System | Direct shell invocation via os.system / os.popen / os.exec*. · classy_ai-0.0.18/Classy/__init__.py |
| high | Py Import Time Network Call | Network call (urllib/requests/httpx/http.client) at install or import time. · classy_ai-0.0.18/Classy/__init__.py |
| medium | Remote Payload | matched "wget " · classy_ai-0.0.18/Classy/__init__.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.0.18 | High risk | 54 | 2026-05-31 |
0.0.17 | Low risk | 0 | 2026-05-30 |
0.0.16 | Low risk | 0 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem pypi classy-ai==0.0.18