PkgRadar

PyPI · pypi.org

pulumi-github

Credential file access: matched "GITHUB_TOKEN"

Scanned versions

VersionVerdictScoreScanned (UTC)
6.15.0a1781636864Low risk02026-06-16
6.15.0a1781594771Low risk02026-06-16
6.15.0a1781421090Low risk02026-06-14
6.15.0a1781075391Low risk02026-06-10
6.15.0a1780988493Low risk02026-06-09
6.15.0a1780907173Low risk02026-06-08
6.15.0a1780902518Low risk02026-06-08
6.15.0a1780815961Low risk02026-06-07
6.15.0a1780728532Low risk02026-06-06
6.15.0a1780643283Low risk02026-06-05
6.15.0a1780556962Low risk02026-06-04
6.15.0a1780470669Low risk02026-06-03
6.15.0a1780123182Low risk02026-05-30
6.15.0a1780006976Review32026-05-28
6.15.0a1779951771Review32026-05-28
6.15.0a1779865479Review122026-05-27

Block this in CI

PkgRadar gates pulumi-github (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi pulumi-github==6.15.0a1780006976