PyPI · pypi.org
codex-lb
Py Runtime Base64 Decode: base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern.
Why PkgRadar flagged 1.20.0b1
| Severity | Signal | Evidence |
|---|---|---|
| high | Py Runtime Base64 Decode | base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · codex_lb-1.20.0b1/scripts/verify_rollout_safe_bridge.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.20.0b1 | High risk | 38 | 2026-06-04 |
Block this in CI
pkgradar gate --ecosystem pypi codex-lb==1.20.0b1