PkgRadar

PyPI · pypi.org

lorch

Py Name Typosquat: Name `lorch` is one edit away from popular package `torch` — likely typosquat.

Why PkgRadar flagged 0.0.3

SeveritySignalEvidence
highPy Name TyposquatName `lorch` is one edit away from popular package `torch` — likely typosquat.

Scanned versions

VersionVerdictScoreScanned (UTC)
0.0.3High risk402026-06-03
0.0.2High risk402026-06-03
0.0.1High risk402026-06-03

Block this in CI

PkgRadar gates lorch (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi lorch==0.0.3