PkgRadar

PyPI · pypi.org

openscvx

Remote Payload: matched "raw.githubusercontent.com"

Why PkgRadar flagged 0.5.3.dev16

SeveritySignalEvidence
mediumRemote Payloadmatched "raw.githubusercontent.com" · openscvx-0.5.3.dev16/openscvx/plotting/viser/server.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.5.3.dev28Low risk02026-06-15
0.5.3.dev27Low risk02026-06-15
0.5.3.dev26Low risk02026-06-13
0.5.3.dev25Low risk02026-06-12
0.5.3.dev24Low risk02026-06-11
0.5.3.dev23Low risk02026-06-11
0.5.3.dev22Low risk02026-06-11
0.5.3.dev21Low risk02026-06-10
0.5.3.dev20Low risk02026-06-10
0.5.3.dev19Low risk02026-06-08
0.5.3.dev18Low risk02026-05-29
0.5.3.dev17Low risk02026-05-29
0.5.3.dev16Review72026-05-27

Block this in CI

PkgRadar gates openscvx (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi openscvx==0.5.3.dev16