PkgRadar

PyPI · pypi.org

mcp-memory-service

Remote Payload: matched "curl "

Why PkgRadar flagged 10.74.1

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · mcp_memory_service-10.74.1/tools/docker/test-docker-modes.sh

Scanned versions

VersionVerdictScoreScanned (UTC)
10.74.1Review82026-06-06
10.74.0Review82026-06-05
10.73.0Review82026-06-05
10.72.0Review82026-06-03
10.71.0Review82026-06-03
10.66.1Review82026-05-30
10.66.0Review82026-05-30
10.70.3Review82026-05-29
10.70.2Review82026-05-29
10.70.1Review82026-05-29
10.70.0Review82026-05-29
10.69.0Review82026-05-28
10.68.0Review82026-05-28
10.67.1Review82026-05-28
10.67.0Review82026-05-28

Block this in CI

PkgRadar gates mcp-memory-service (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi mcp-memory-service==10.74.1