PyPI · pypi.org
ralph-workflow
Python Bun Js Exec: Python file references the Bun JavaScript runtime — cross-language execution
Why PkgRadar flagged 0.8.15
| Severity | Signal | Evidence |
|---|---|---|
| high | Python Bun Js Exec | Python file references the Bun JavaScript runtime — cross-language execution · ralph_workflow-0.8.15/ralph/language_detector/scanner.py |
| high | Python Bun Js Exec | Python file references the Bun JavaScript runtime — cross-language execution · ralph_workflow-0.8.15/ralph/language_detector/signatures.py |
| medium | Py Import Time Subprocess | subprocess call — process spawning. · ralph_workflow-0.8.15/ralph/process/manager/__init__.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.8.15 | High risk | 82 | 2026-06-16 |
0.8.14 | High risk | 82 | 2026-06-13 |
0.8.13 | High risk | 82 | 2026-06-13 |
0.8.12 | High risk | 82 | 2026-06-12 |
0.8.11 | High risk | 82 | 2026-06-12 |
0.8.10 | High risk | 82 | 2026-06-11 |
0.8.9 | High risk | 82 | 2026-06-10 |
0.8.8 | Review | 32 | 2026-05-31 |
Campaign attribution
Block this in CI
pkgradar gate --ecosystem pypi ralph-workflow==0.8.15