PkgRadar

PyPI · pypi.org

pdd-cli

Js Hidden Powershell: Hidden / non-interactive PowerShell invocation in package code — `-WindowStyle Hidden`, `irm | iex`, `windowsHide: true`, or equivalent — used to download-and-run payloads on Windows installers.

Why PkgRadar flagged 0.0.276

SeveritySignalEvidence
highJs Hidden PowershellHidden / non-interactive PowerShell invocation in package code — `-WindowStyle Hidden`, `irm | iex`, `windowsHide: true`, or equivalent — used to download-and-run payloads on Windows installers. · pdd_cli-0.0.276/utils/vscode_prompt/out/pddInstaller.js
highJs Hidden PowershellHidden / non-interactive PowerShell invocation in package code — `-WindowStyle Hidden`, `irm | iex`, `windowsHide: true`, or equivalent — used to download-and-run payloads on Windows installers. · pdd_cli-0.0.276/utils/vscode_prompt/src/pddInstaller.ts
highPython Bun Js ExecPython file references the Bun JavaScript runtime — cross-language execution · pdd_cli-0.0.276/pdd/checkup_gates.py
mediumPy Import Time Subprocesssubprocess call — process spawning. · pdd_cli-0.0.276/pdd/__init__.py
highPy Runtime Dynamic Dangerous ImportDynamic __import__('os') — reflection bypass for static checks. · pdd_cli-0.0.276/context/server/routes/auth_example.py
highPy Runtime Dynamic Dangerous ImportDynamic __import__('sys') — reflection bypass for static checks. · pdd_cli-0.0.276/context/server/routes/auth_example.py
highPy Runtime Base64 Decodebase64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · pdd_cli-0.0.276/pdd/get_jwt_token.py
highPy Runtime Base64 Decodebase64/hex decode combined with exec/subprocess — classic obfuscated payload pattern. · pdd_cli-0.0.276/pdd/server/routes/files.py
mediumCredential file accessmatched "GOOGLE_APPLICATION_CREDENTIALS" · pdd_cli-0.0.276/pdd/agentic_common.py
mediumCredential file accessmatched "GOOGLE_APPLICATION_CREDENTIALS" · pdd_cli-0.0.276/pdd/cli_detector.py
mediumCredential file accessmatched "aws_access_key" · pdd_cli-0.0.276/pdd/llm_invoke.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.0.276High risk1502026-06-17
0.0.275High risk1502026-06-16
0.0.274High risk1502026-06-15
0.0.273High risk1502026-06-13
0.0.272High risk1502026-06-12
0.0.271High risk1502026-06-12
0.0.270High risk1502026-06-11
0.0.269High risk1502026-06-10
0.0.268High risk1502026-06-09
0.0.267High risk1302026-06-09
0.0.266High risk1302026-06-08
0.0.265High risk1272026-06-07
0.0.264High risk1272026-06-06
0.0.263High risk1272026-06-05
0.0.262High risk1272026-06-04
0.0.261High risk1272026-06-03
0.0.258High risk1252026-06-02
0.0.259High risk1252026-06-02
0.0.260High risk1252026-06-02
0.0.257High risk1252026-06-01
0.0.256High risk1252026-05-31
0.0.255High risk1252026-05-30
0.0.254High risk1252026-05-30
0.0.253High risk1252026-05-30
0.0.252High risk1092026-05-30

Campaign attribution

Part of the Shai-Hulud (PyPI) campaign.

Block this in CI

PkgRadar gates pdd-cli (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi pdd-cli==0.0.276