PyPI · pypi.org
deepchem
Py Install Time Eval Exec: Python eval()/exec() called on a string.
Why PkgRadar flagged 2.8.1.dev20260608233732
| Severity | Signal | Evidence |
|---|---|---|
| medium | Py Install Time Eval Exec | Python eval()/exec() called on a string. · deepchem-2.8.1.dev20260608233732/setup.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
2.8.1.dev20260608233732 | Review | 13 | 2026-06-08 |
2.8.1.dev20260608233623 | Review | 13 | 2026-06-08 |
2.8.1.dev20260608233657 | Review | 13 | 2026-06-08 |
2.8.1.dev20260608224216 | Review | 13 | 2026-06-08 |
Block this in CI
pkgradar gate --ecosystem pypi deepchem==2.8.1.dev20260608233732