PkgRadar

PyPI · pypi.org

jupyterlab-git-oauth

Credential file access: matched ".ssh/"

Why PkgRadar flagged 0.52.5

SeveritySignalEvidence
mediumCredential file accessmatched ".ssh/" · jupyterlab_git_oauth-0.52.5/jupyterlab_git/ssh.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.52.5Review102026-05-28

Block this in CI

PkgRadar gates jupyterlab-git-oauth (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi jupyterlab-git-oauth==0.52.5