PyPI · pypi.org
crc-bonfire
Remote Payload: matched "raw.githubusercontent.com"
Why PkgRadar flagged 6.17.0
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "raw.githubusercontent.com" · crc_bonfire-6.17.0/build_deploy.sh |
| medium | Remote Payload | matched "raw.githubusercontent.com" · crc_bonfire-6.17.0/cicd/bootstrap.sh |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
6.17.0 | Review | 7 | 2026-06-10 |
6.16.0 | Review | 7 | 2026-06-10 |
6.15.0 | Review | 7 | 2026-06-09 |
6.14.0 | Review | 7 | 2026-06-03 |
6.13.3 | Review | 24 | 2026-05-27 |
Block this in CI
pkgradar gate --ecosystem pypi crc-bonfire==6.17.0