PkgRadar

PyPI · pypi.org

commodutil

Credential File Packaged: commodutil-4.2.0/.pypirc

Why PkgRadar flagged 4.2.0

SeveritySignalEvidence
highCredential File Packagedcommodutil-4.2.0/.pypirc · commodutil-4.2.0/.pypirc

Scanned versions

VersionVerdictScoreScanned (UTC)
4.2.0High risk172026-06-03

Block this in CI

PkgRadar gates commodutil (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi commodutil==4.2.0