PyPI · pypi.org
patchpal
Credential file access: matched "AWS_ACCESS_KEY"
Why PkgRadar flagged 0.23.0
| Severity | Signal | Evidence |
|---|---|---|
| medium | Credential file access | matched "AWS_ACCESS_KEY" · patchpal-0.23.0/patchpal/cli/sandbox.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.23.0 | Review | 15 | 2026-06-09 |
0.22.8 | Review | 15 | 2026-06-04 |
0.22.7 | Review | 15 | 2026-06-01 |
0.22.6 | Review | 15 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem pypi patchpal==0.23.0