PkgRadar

PyPI · pypi.org

django-usertz-localize

Python Bun Js Exec: Python file references the Bun JavaScript runtime — cross-language execution

Why PkgRadar flagged 0.1.1

SeveritySignalEvidence
highPython Bun Js ExecPython file references the Bun JavaScript runtime — cross-language execution · django_usertz_localize-0.1.1/.env/Lib/site-packages/pygments/lexers/_vim_builtins.py
mediumPy Import Time Subprocesssubprocess call — process spawning. · django_usertz_localize-0.1.1/.env/Lib/site-packages/docutils/writers/odf_odt/__init__.py
mediumPy Import Time Subprocesssubprocess call — process spawning. · django_usertz_localize-0.1.1/.env/Lib/site-packages/jaraco/context/__init__.py
mediumPy Import Time Eval ExecPython eval()/exec() called on a string. · django_usertz_localize-0.1.1/.env/Lib/site-packages/jaraco/functools/__init__.py
mediumPy Import Time Eval ExecPython eval()/exec() called on a string. · django_usertz_localize-0.1.1/.env/Lib/site-packages/pip/_vendor/pkg_resources/__init__.py
highPy Import Time Network CallNetwork call (urllib/requests/httpx/http.client) at install or import time. · django_usertz_localize-0.1.1/.env/Lib/site-packages/jaraco/context/__init__.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.1.1High risk1922026-06-11
0.1.0Review342026-06-11

Block this in CI

PkgRadar gates django-usertz-localize (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi django-usertz-localize==0.1.1