PkgRadar

PyPI · pypi.org

openjarvis

Remote Payload: matched "curl "

Why PkgRadar flagged 1.0.3.dev825

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · openjarvis-1.0.3.dev825/deploy/posthog/posthog-hetzner-prep.sh

Scanned versions

VersionVerdictScoreScanned (UTC)
1.0.3.dev825Review322026-06-11
1.0.3.dev824Review322026-06-11
1.0.3.dev823Review322026-06-11
1.0.3.dev821Review322026-06-11
1.0.3.dev820Review322026-06-11
1.0.3.dev819Review322026-06-10
1.0.3.dev817Review322026-06-10
1.0.3.dev816Review322026-06-10
1.0.3.dev815Review322026-06-10
1.0.3.dev818Review322026-06-10
1.0.3.dev814Review322026-06-10
1.0.3.dev813Review322026-06-10
0.1.2.dev812Review322026-06-10
0.1.2.dev811Review322026-06-10
0.1.2.dev810Review322026-06-10
0.1.2.dev809Review322026-06-10
0.1.2.dev807Review322026-06-09
0.1.2.dev805Review322026-06-09
0.1.2.dev802Review322026-06-06
0.1.2.dev801Review322026-06-06
0.1.2.dev796Review322026-06-05
0.1.2.dev797Review322026-06-05
0.1.2.dev795Review322026-06-05
0.1.2.dev793Review322026-06-04
0.1.2.dev792Review322026-06-04
0.1.2.dev791Review322026-06-04
0.1.2.dev789Review322026-06-04
0.1.2.dev790Review322026-06-04
0.1.2.dev787Review322026-06-03
0.1.2.dev784Review322026-06-03
0.1.2.dev785Review322026-06-03
0.1.2.dev786Review322026-06-03
0.1.2.dev782Review322026-06-01
0.1.2.dev781Review322026-06-01
0.1.2.dev780Review322026-06-01
0.1.2.dev779Review322026-06-01
0.1.2.dev778Review322026-06-01
0.1.2.dev777Review322026-06-01
0.1.2.dev775Review322026-06-01
0.1.2.dev776Review322026-06-01
0.1.2.dev774Review322026-06-01
0.1.2.dev772Review322026-06-01
0.1.2.dev773Review322026-06-01
0.1.2.dev770Review322026-05-31
0.1.2.dev769Review322026-05-31
0.1.2.dev767Review322026-05-31
0.1.2.dev766Review322026-05-31
0.1.2.dev765Review322026-05-31
1.0.3.dev739Review322026-05-30
1.0.3.dev738Review322026-05-30
1.0.3.dev736Review322026-05-30
1.0.3.dev734Review322026-05-30
1.0.3.dev732Review322026-05-30
0.1.2.dev763Review322026-05-30
0.1.2.dev762Review322026-05-30
0.1.2.dev761Review322026-05-30
0.1.2.dev760Review322026-05-30
0.1.2.dev759Review322026-05-30
0.1.2.dev758Review322026-05-29
0.1.2.dev757Review322026-05-29
0.1.2.dev756Review322026-05-29
0.1.2.dev755Review322026-05-29
0.1.2.dev754Review322026-05-29
0.1.2.dev753Review322026-05-29
0.1.2.dev752Review322026-05-29
0.1.2.dev751Review322026-05-29
0.1.2.dev750Review322026-05-29
1.0.3.dev749Review322026-05-29
1.0.3.dev747Review372026-05-29
1.0.3.dev740Review372026-05-28
1.0.3.dev741Review372026-05-28

Block this in CI

PkgRadar gates openjarvis (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi openjarvis==1.0.3.dev825