PkgRadar

PyPI · pypi.org

mentat-gulp

Credential File Packaged: mentat_gulp-1.7.403/.env

Why PkgRadar flagged 1.7.403

SeveritySignalEvidence
highCredential File Packagedmentat_gulp-1.7.403/.env · mentat_gulp-1.7.403/.env

Scanned versions

VersionVerdictScoreScanned (UTC)
1.7.403High risk402026-06-12
1.7.402High risk402026-06-06
1.7.401High risk402026-06-06
1.7.400High risk402026-05-30
1.7.300High risk402026-05-30

Block this in CI

PkgRadar gates mentat-gulp (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi mentat-gulp==1.7.403