PkgRadar

PyPI · pypi.org

kindex

Py Install Time Subprocess: subprocess call — process spawning.

Why PkgRadar flagged 0.25.3

SeveritySignalEvidence
mediumPy Install Time Subprocesssubprocess call — process spawning. · kindex-0.25.3/src/kindex/setup.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.25.3Review552026-06-14
0.25.2Review552026-06-13
0.25.1Review552026-06-12
0.25.0Review552026-06-12
0.24.1Review552026-06-12
0.24.0Review552026-06-11
0.23.0Review552026-06-09
0.22.0Review552026-06-09
0.21.3Review552026-05-30
0.21.2Review552026-05-30
0.21.1Review552026-05-30
0.21.0Review552026-05-30

Block this in CI

PkgRadar gates kindex (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi kindex==0.25.3