PyPI · pypi.org
ktransformers
Py Install Time Eval Exec: Python eval()/exec() called on a string.
Why PkgRadar flagged 0.6.2.post4
| Severity | Signal | Evidence |
|---|---|---|
| medium | Py Install Time Eval Exec | Python eval()/exec() called on a string. · ktransformers-0.6.2.post4/setup.py |
| high | Py Name Typosquat | Name `ktransformers` is one edit away from popular package `transformers` — likely typosquat. |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.6.2.post4 | High risk | 59 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem pypi ktransformers==0.6.2.post4