PyPI · pypi.org
pydotbot
Credential File Packaged: pydotbot-0.29.1/dotbot/frontend/.env
Why PkgRadar flagged 0.29.1
| Severity | Signal | Evidence |
|---|---|---|
| high | Credential File Packaged | pydotbot-0.29.1/dotbot/frontend/.env · pydotbot-0.29.1/dotbot/frontend/.env |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.29.1 | High risk | 17 | 2026-06-05 |
0.29.0 | High risk | 17 | 2026-06-05 |
0.29.0rc3 | High risk | 17 | 2026-06-02 |
0.29.0rc2 | High risk | 17 | 2026-05-30 |
0.29.0rc1 | High risk | 17 | 2026-05-30 |
Block this in CI
pkgradar gate --ecosystem pypi pydotbot==0.29.1