PkgRadar

PyPI · pypi.org

planetarypy

Remote Payload: matched "raw.githubusercontent.com"

Why PkgRadar flagged 0.65.0

SeveritySignalEvidence
mediumRemote Payloadmatched "raw.githubusercontent.com" · planetarypy-0.65.0/src/planetarypy/pds/static_index.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.76.3Low risk02026-06-17
0.76.2Low risk02026-06-12
0.76.1Low risk02026-06-12
0.76.0Low risk02026-06-11
0.75.0Low risk02026-06-11
0.73.2Low risk02026-06-10
0.73.1Low risk02026-06-10
0.73.0Low risk02026-06-10
0.72.0Low risk02026-06-10
0.71.0Low risk02026-06-10
0.70.0Low risk02026-06-09
0.69.0Low risk02026-06-09
0.68.2Low risk02026-06-04
0.68.1Low risk02026-06-04
0.68.0Low risk02026-06-02
0.67.1Low risk02026-06-02
0.67.0Low risk02026-05-29
0.66.0Low risk02026-05-28
0.65.1Low risk02026-05-28
0.65.0Review32026-05-27
0.64.0Review32026-05-27

Block this in CI

PkgRadar gates planetarypy (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi planetarypy==0.65.0