PyPI · pypi.org
flask-commands
Credential File Packaged: flask_commands-0.3.8/flask_commands/project/.env
Why PkgRadar flagged 0.3.8
| Severity | Signal | Evidence |
|---|---|---|
| high | Credential File Packaged | flask_commands-0.3.8/flask_commands/project/.env · flask_commands-0.3.8/flask_commands/project/.env |
| high | Credential File Packaged | flask_commands-0.3.8/flask_commands/project_no_db/.env · flask_commands-0.3.8/flask_commands/project_no_db/.env |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.3.8 | High risk | 70 | 2026-06-15 |
0.3.7 | High risk | 70 | 2026-06-15 |
0.3.6 | High risk | 70 | 2026-06-08 |
0.3.5 | High risk | 70 | 2026-06-07 |
0.3.4 | High risk | 70 | 2026-06-06 |
0.3.3 | High risk | 70 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem pypi flask-commands==0.3.8