PyPI · pypi.org
prowler
Credential file access: matched "GOOGLE_APPLICATION_CREDENTIALS"
Why PkgRadar flagged 5.30.2
| Severity | Signal | Evidence |
|---|---|---|
| medium | Credential file access | matched "GOOGLE_APPLICATION_CREDENTIALS" · prowler-5.30.2/prowler/providers/gcp/gcp_provider.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
5.30.2 | Review | 50 | 2026-06-17 |
5.30.1 | Review | 50 | 2026-06-12 |
5.30.0 | Review | 50 | 2026-06-11 |
5.29.3 | Review | 50 | 2026-06-09 |
5.29.2 | Review | 50 | 2026-06-03 |
5.29.1 | Review | 50 | 2026-06-03 |
5.29.0 | Review | 50 | 2026-06-01 |
Block this in CI
pkgradar gate --ecosystem pypi prowler==5.30.2