PkgRadar

PyPI · pypi.org

mcp-contextforge-gateway

Remote Payload: matched "github.com/boyter/scc/releases/download"

Why PkgRadar flagged 1.0.3

SeveritySignalEvidence
mediumRemote Payloadmatched "github.com/boyter/scc/releases/download" · mcp_contextforge_gateway-1.0.3/os_deps.sh

Scanned versions

VersionVerdictScoreScanned (UTC)
1.0.3Review162026-06-10
1.0.2Review162026-05-30

Block this in CI

PkgRadar gates mcp-contextforge-gateway (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi mcp-contextforge-gateway==1.0.3