PkgRadar

PyPI · pypi.org

in-dbt-spark

Remote Payload: matched "curl "

Why PkgRadar flagged 1.9.47

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · in_dbt_spark-1.9.47/dagger/scripts/configure_odbc.sh
mediumRemote Payloadmatched "curl " · in_dbt_spark-1.9.47/dagger/scripts/install_os_reqs.sh
mediumRemote Payloadmatched "wget " · in_dbt_spark-1.9.47/dagger/spark-container/install_spark.sh

Scanned versions

VersionVerdictScoreScanned (UTC)
1.9.47Review182026-05-27

Block this in CI

PkgRadar gates in-dbt-spark (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi in-dbt-spark==1.9.47