PkgRadar

PyPI · pypi.org

mint-ai

Py Import Time Os System: Direct shell invocation via os.system / os.popen / os.exec*.

Why PkgRadar flagged 0.0.0a9

SeveritySignalEvidence
highPy Import Time Os SystemDirect shell invocation via os.system / os.popen / os.exec*. · mint/__init__.py
mediumPy Import Time Subprocesssubprocess call — process spawning. · mint/__init__.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.0.0a9High risk822026-06-05
0.0.0a8High risk822026-06-05
0.0.0a7High risk822026-06-05
0.0.0a6High risk822026-06-05
0.0.0a5High risk822026-06-05

Block this in CI

PkgRadar gates mint-ai (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi mint-ai==0.0.0a9