PyPI · pypi.org
pip-skill
Remote Payload: matched "raw.githubusercontent.com"
Why PkgRadar flagged 0.2.1
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "raw.githubusercontent.com" · pip_skill-0.2.1/src/pip_skill/registry.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.2.1 | Review | 12 | 2026-05-29 |
0.2.0 | Review | 12 | 2026-05-29 |
Block this in CI
pkgradar gate --ecosystem pypi pip-skill==0.2.1