PyPI · pypi.org
ob-metaflow-extensions
Py Import Time Subprocess: subprocess call — process spawning.
Why PkgRadar flagged 1.6.22
| Severity | Signal | Evidence |
|---|---|---|
| medium | Py Import Time Subprocess | subprocess call — process spawning. · ob_metaflow_extensions-1.6.22/metaflow_extensions/outerbounds/plugins/torchtune/__init__.py |
| medium | Credential file access | matched "AWS_ACCESS_KEY" · ob_metaflow_extensions-1.6.22/metaflow_extensions/outerbounds/plugins/__init__.py |
| medium | Credential file access | matched "aws_access_key" · ob_metaflow_extensions-1.6.22/metaflow_extensions/outerbounds/plugins/checkpoint_datastores/coreweave.py |
| medium | Credential file access | matched "aws_access_key" · ob_metaflow_extensions-1.6.22/metaflow_extensions/outerbounds/plugins/checkpoint_datastores/nebius.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
1.6.22 | Review | 31 | 2026-06-11 |
1.6.21 | Review | 31 | 2026-06-09 |
1.6.20 | Review | 31 | 2026-06-03 |
Block this in CI
pkgradar gate --ecosystem pypi ob-metaflow-extensions==1.6.22