PkgRadar

PyPI · pypi.org

clified

Remote Payload: matched "curl "

Why PkgRadar flagged 0.5.0

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · clified-0.5.0/install.sh
mediumRemote Payloadmatched "curl " · clified-0.5.0/src/clified/installer/bun_installer.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.5.0Review242026-06-08

Block this in CI

PkgRadar gates clified (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi clified==0.5.0