PyPI · pypi.org
methodproof
Py Runtime Base64 Decode: base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern.
Why PkgRadar flagged 0.8.8
| Severity | Signal | Evidence |
|---|---|---|
| high | Py Runtime Base64 Decode | base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · methodproof-0.8.8/methodproof/cli.py |
| high | Py Runtime Base64 Decode | base64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · methodproof-0.8.8/methodproof/tui/start.py |
| medium | Remote Payload | matched "curl " · methodproof-0.8.8/methodproof/hooks/claude_code.sh |
| medium | Remote Payload | matched "curl " · methodproof-0.8.8/methodproof/hooks/cline_hook.sh |
| medium | Remote Payload | matched "curl " · methodproof-0.8.8/methodproof/hooks/codex_hook.sh |
| medium | Remote Payload | matched "curl " · methodproof-0.8.8/methodproof/hooks/gemini_hook.sh |
| medium | Remote Payload | matched "curl " · methodproof-0.8.8/methodproof/hooks/kiro_hook.sh |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.8.8 | High risk | 100 | 2026-05-31 |
Block this in CI
pkgradar gate --ecosystem pypi methodproof==0.8.8