PyPI · pypi.org
silent-pack
Remote Payload: matched "curl "
Why PkgRadar flagged 0.1.1
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "curl " · silent_pack-0.1.1/pack/ground_works/AR/start-standalone.sh |
| medium | Large Native Blob | 22713584 bytes · silent_pack-0.1.1/pack/3fs_fuse/hf3fs_fuse/libhf3fs_api_shared.so |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.1.1 | Review | 22 | 2026-06-03 |
0.1.0 | Review | 12 | 2026-06-03 |
Block this in CI
pkgradar gate --ecosystem pypi silent-pack==0.1.1