PkgRadar

PyPI · pypi.org

hpc-agent

Py Import Time Subprocess: subprocess call — process spawning.

Why PkgRadar flagged 0.9.0

SeveritySignalEvidence
mediumPy Import Time Subprocesssubprocess call — process spawning. · hpc_agent-0.9.0/src/hpc_agent/infra/backends/__init__.py
mediumCredential file accessmatched ".ssh/" · hpc_agent-0.9.0/src/hpc_agent/ops/preflight/check.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.9.0Review472026-06-03
0.7.5Review472026-05-30
0.7.4Review472026-05-30
0.7.3Review472026-05-30
0.7.2Review472026-05-30
0.7.1Review472026-05-30
0.7.0Review472026-05-30
0.6.1Review472026-05-30
0.6.0Review422026-05-30
0.8.1Review472026-05-30
0.8.0Review472026-05-29
0.7.9Review472026-05-29
0.7.8Review472026-05-29
0.7.7Review472026-05-29
0.7.6Review472026-05-29

Block this in CI

PkgRadar gates hpc-agent (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi hpc-agent==0.9.0