PkgRadar

PyPI · pypi.org

pulumi-django-azure

Remote Payload: matched "curl "

Why PkgRadar flagged 1.0.74

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · pulumi_django_azure-1.0.74/src/pulumi_django_azure/django_deployment.py
mediumCredential file accessmatched ".azure" · pulumi_django_azure-1.0.74/src/pulumi_django_azure/azure_helper.py

Scanned versions

VersionVerdictScoreScanned (UTC)
1.0.75Low risk02026-06-09
1.0.74Review232026-05-27
1.0.73Review232026-05-27
1.0.72Review232026-05-27

Block this in CI

PkgRadar gates pulumi-django-azure (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi pulumi-django-azure==1.0.74