PyPI · pypi.org
elephant-agent
Py Runtime Dynamic Dangerous Import: Dynamic __import__('os') — reflection bypass for static checks.
Why PkgRadar flagged 1.0.0.dev20260601023325
| Severity | Signal | Evidence |
|---|---|---|
| high | Py Runtime Dynamic Dangerous Import | Dynamic __import__('os') — reflection bypass for static checks. · elephant_agent-1.0.0.dev20260601023325/apps/daemon.py |
| high | Py Runtime Base64 Decode | base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · elephant_agent-1.0.0.dev20260601023325/apps/provider_runtime_support.py |
| high | Py Runtime Base64 Decode | base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · elephant_agent-1.0.0.dev20260601023325/packages/auth/discovery.py |
| high | Py Runtime Dynamic Dangerous Import | Dynamic __import__('os') — reflection bypass for static checks. · elephant_agent-1.0.0.dev20260601023325/packages/sandbox/backends/docker.py |
| high | Py Runtime Dynamic Dangerous Import | Dynamic __import__('os') — reflection bypass for static checks. · elephant_agent-1.0.0.dev20260601023325/packages/sandbox/backends/sdk.py |
| high | Py Runtime Dynamic Dangerous Import | Dynamic __import__('os') — reflection bypass for static checks. · elephant_agent-1.0.0.dev20260601023325/packages/sandbox/backends/ssh.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.0.0.dev20260601023325 | High risk | 115 | 2026-06-01 |
1.0.0.dev20260530111023 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530073759 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530071806 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530065835 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530064236 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530063005 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530053359 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530051354 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530045728 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530041731 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530033031 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530030757 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530023032 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530015824 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530010508 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530005021 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530002628 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530003749 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530001226 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260530000257 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529234947 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529230902 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529225316 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529220921 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529215434 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529210514 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529204718 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529205649 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529202638 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529203458 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529202958 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529202042 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529193202 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529191548 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529184645 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529183832 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529182349 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529181008 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529175119 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529174000 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260529172211 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260528161344 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260528121009 | High risk | 110 | 2026-05-30 |
1.0.0.dev20260528115026 | High risk | 110 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem pypi elephant-agent==1.0.0.dev20260601023325