PkgRadar

PyPI · pypi.org

ouroboros-ai

Py Install Time Subprocess: subprocess call — process spawning.

Why PkgRadar flagged 0.41.1.dev44

SeveritySignalEvidence
mediumPy Install Time Subprocesssubprocess call — process spawning. · ouroboros_ai-0.41.1.dev44/src/ouroboros/cli/commands/setup.py
highPython Bun Js ExecPython file references the Bun JavaScript runtime — cross-language execution · ouroboros_ai-0.41.1.dev44/src/ouroboros/evaluation/detector.py
highPython Bun Js ExecPython file references the Bun JavaScript runtime — cross-language execution · ouroboros_ai-0.41.1.dev44/src/ouroboros/evaluation/languages.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.41.1.dev44High risk1052026-06-12
0.41.1.dev43High risk1052026-06-12
0.41.1.dev42High risk1052026-06-12
0.41.1.dev41High risk1052026-06-12
0.41.1.dev40High risk1052026-06-12
0.41.1.dev37High risk1052026-06-12
0.41.1.dev39High risk1052026-06-12
0.41.1.dev38High risk1052026-06-12
0.41.1.dev35High risk1052026-06-12
0.41.1.dev36High risk1052026-06-12
0.41.1.dev34High risk1052026-06-12
0.41.1.dev33High risk1052026-06-12
0.41.1.dev32High risk1052026-06-12
0.41.1.dev30High risk1052026-06-12
0.41.1.dev29High risk1052026-06-12
0.41.1.dev31High risk1052026-06-12
0.41.1.dev28High risk1052026-06-11
0.41.1.dev27High risk1052026-06-11
0.41.1.dev26High risk1052026-06-11
0.41.1.dev25High risk1052026-06-09
0.41.1.dev24High risk1052026-06-09
0.41.1.dev23High risk1052026-06-09
0.41.1.dev22Review552026-06-09
0.41.1.dev21Review552026-06-09
0.41.1.dev20Review552026-06-09
0.41.1.dev19Review552026-06-09
0.41.1.dev18Review552026-06-09
0.41.1.dev17Review552026-06-09
0.41.1.dev16Review552026-06-09
0.41.1.dev15Review552026-06-09
0.41.1.dev14Review552026-06-09
0.41.1.dev13Review552026-06-07
0.41.1.dev10Review552026-06-07
0.41.1.dev4Review552026-06-07
0.41.1.dev9Review552026-06-07
0.41.1.dev5Review552026-06-07
0.41.1.dev8Review552026-06-07
0.41.1.dev7Review552026-06-07
0.41.1.dev6Review552026-06-07
0.41.1.dev11Review552026-06-07
0.41.1.dev12Review552026-06-07
0.41.1.dev2Review552026-06-07
0.41.1.dev3Review552026-06-07
0.41.1.dev1Review552026-06-07
0.41.0Review552026-06-07
0.40.2.dev23Review552026-06-07
0.40.2.dev22Review552026-06-06
0.40.2.dev21Review552026-06-05
0.40.2.dev20Review552026-06-05
0.40.2.dev19Review552026-06-03
0.40.2.dev18Review552026-06-03
0.40.2.dev16Review552026-06-03
0.40.2.dev17Review552026-06-03
0.40.2.dev15Review552026-06-03
0.40.2.dev14Review552026-06-03
0.40.2.dev13Review552026-06-02
0.40.2.dev12Review552026-06-02
0.40.2.dev11Review552026-06-02
0.40.2.dev10Review552026-06-02
0.40.2.dev8Review552026-06-02
0.40.2.dev9Review552026-06-02
0.40.2.dev5Review552026-06-02
0.40.2.dev6Review552026-06-02
0.40.2.dev7Review552026-06-02
0.40.2.dev3Review552026-05-31
0.40.2.dev4Review552026-05-31
0.40.2.dev2Review552026-05-31
0.40.2.dev1Review552026-05-31
0.39.2.dev106Review552026-05-30
0.39.2.dev105Review552026-05-30
0.39.2.dev104Review552026-05-30
0.39.2.dev103Review552026-05-30
0.39.2.dev102Review552026-05-30
0.39.2.dev101Review552026-05-30
0.39.2.dev100Review552026-05-30
0.39.2.dev99Review552026-05-30
0.39.2.dev98Review552026-05-30
0.39.2.dev97Review552026-05-30
0.39.2.dev96Review552026-05-30
0.39.2.dev95Review552026-05-30
0.39.2.dev94Review552026-05-30
0.39.2.dev93Review552026-05-30
0.39.2.dev91Review552026-05-30
0.39.2.dev92Review552026-05-30
0.39.2.dev88Review552026-05-30
0.39.2.dev87Review552026-05-30
0.39.2.dev90Review552026-05-30
0.39.2.dev89Review552026-05-30
0.39.2.dev85Review552026-05-30
0.39.2.dev86Review552026-05-30
0.39.2.dev83Review552026-05-30
0.39.2.dev82Review552026-05-30
0.39.2.dev84Review552026-05-30
0.39.2.dev81Review552026-05-30
0.39.2.dev80Review552026-05-30
0.39.2.dev79Review552026-05-30
0.39.2.dev77Review552026-05-30
0.39.2.dev78Review552026-05-30
0.39.2.dev76Review552026-05-30
0.39.2.dev75Review552026-05-30
0.39.2.dev74Review552026-05-30
0.39.2.dev71Review552026-05-30
0.39.2.dev72Review552026-05-30
0.39.2.dev70Review552026-05-30
0.39.2.dev73Review552026-05-30
0.40.1Review552026-05-30
0.40.1.dev2Review552026-05-30
0.39.2.dev69Review552026-05-30
0.40.1.dev1Review552026-05-30
0.40.0Review552026-05-30
0.39.2.dev111Review552026-05-30
0.39.2.dev110Review552026-05-29
0.39.2.dev109Review552026-05-29
0.39.2.dev108Review552026-05-29
0.39.2.dev107Review552026-05-29

Campaign attribution

Part of the Shai-Hulud (PyPI) campaign.

Block this in CI

PkgRadar gates ouroboros-ai (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi ouroboros-ai==0.41.1.dev44