PkgRadar

PyPI · pypi.org

logics-manager

Python Bun Js Exec: Python file references the Bun JavaScript runtime — cross-language execution

Why PkgRadar flagged 2.8.1

SeveritySignalEvidence
highPython Bun Js ExecPython file references the Bun JavaScript runtime — cross-language execution · logics_manager-2.8.1/logics_manager/assist.py
highPy Runtime Dynamic Dangerous ImportDynamic __import__('subprocess') — reflection bypass for static checks. · logics_manager-2.8.1/logics_manager/sync.py

Scanned versions

VersionVerdictScoreScanned (UTC)
2.8.1High risk702026-06-12
2.8.0High risk702026-06-12
2.7.0High risk702026-06-11
2.6.0High risk702026-06-11
2.5.2High risk702026-06-10
2.5.1High risk702026-06-09
2.5.0High risk702026-06-09
2.4.0High risk302026-06-08
2.3.3High risk302026-06-08
2.3.2High risk302026-06-08
2.3.1High risk302026-06-08
2.3.0High risk302026-06-07
2.2.0High risk302026-06-07
2.1.2High risk302026-06-05
2.1.1High risk302026-05-30
2.1.0High risk302026-05-30

Block this in CI

PkgRadar gates logics-manager (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi logics-manager==2.8.1