PyPI · pypi.org
hmacsync
Py Runtime Subprocess: subprocess call — process spawning.
Early detection
PkgRadar flagged this 4h before public disclosure
Detected 2026-05-26 · disclosed as MAL-2026-4828 on 2026-05-26
Why PkgRadar flagged 1.0.0
| Severity | Signal | Evidence |
|---|---|---|
| medium | Py Runtime Subprocess | subprocess call — process spawning. · hmacsync-1.0.0/hmacsync/_m1.py |
| medium | Py Runtime Subprocess | subprocess call — process spawning. · hmacsync-1.0.0/hmacsync/_m5.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.0.0 | Review | 40 | 2026-05-26 |
Block this in CI
pkgradar gate --ecosystem pypi hmacsync==1.0.0