PyPI · pypi.org
harness-maker
Python Bun Js Exec: Python file references the Bun JavaScript runtime — cross-language execution
Why PkgRadar flagged 0.29.1
| Severity | Signal | Evidence |
|---|---|---|
| high | Python Bun Js Exec | Python file references the Bun JavaScript runtime — cross-language execution · harness_maker-0.29.1/src/harness_maker/profile.py |
| medium | Py Custom Build Backend | Non-standard PEP 517 build-backend `uv_build` — runs custom code at install time. · pyproject.toml |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.29.1 | High risk | 65 | 2026-06-11 |
0.29.0 | Review | 25 | 2026-06-07 |
0.28.11 | Review | 20 | 2026-06-03 |
0.28.9 | Review | 20 | 2026-06-02 |
0.28.8 | Review | 20 | 2026-06-02 |
0.28.6 | Review | 20 | 2026-06-02 |
0.28.5 | Review | 20 | 2026-06-02 |
0.28.4 | Review | 20 | 2026-05-31 |
0.28.2 | Review | 20 | 2026-05-31 |
0.28.1 | Review | 20 | 2026-05-31 |
0.28.0 | Review | 20 | 2026-05-30 |
0.27.1 | Review | 20 | 2026-05-28 |
0.26.8 | Review | 20 | 2026-05-28 |
0.26.7 | Review | 20 | 2026-05-28 |
0.26.6 | Review | 20 | 2026-05-28 |
0.26.5 | Review | 20 | 2026-05-28 |
Block this in CI
pkgradar gate --ecosystem pypi harness-maker==0.29.1