PkgRadar

PyPI · pypi.org

eigenpal

Remote Payload: matched "curl "

Why PkgRadar flagged 0.5.11

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · eigenpal-0.5.11/src/eigenpal/_files.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.7.2Low risk02026-06-13
0.7.1Low risk02026-06-13
0.7.0Low risk02026-06-12
0.6.17Low risk02026-06-12
0.6.16Low risk02026-06-12
0.6.15Low risk02026-06-10
0.6.14Low risk02026-06-09
0.6.13Low risk02026-06-08
0.6.12Low risk02026-06-08
0.6.11Low risk02026-06-08
0.6.10Low risk02026-06-08
0.6.9Low risk02026-06-04
0.6.8Low risk02026-06-04
0.6.7Low risk02026-06-04
0.6.6Low risk02026-06-03
0.6.5Low risk02026-06-03
0.6.4Low risk02026-06-03
0.6.3Low risk02026-06-02
0.6.2Low risk02026-06-02
0.6.1Low risk02026-06-02
0.6.0Low risk02026-06-02
0.5.12Low risk02026-06-02
0.5.11Review122026-05-26
0.5.10Review122026-05-26

Block this in CI

PkgRadar gates eigenpal (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi eigenpal==0.5.11