PkgRadar

PyPI · pypi.org

snaffler-ng

Webhook Exfil Endpoint: matched "hooks.slack.com/services/"

Why PkgRadar flagged 1.5.12

SeveritySignalEvidence
highWebhook Exfil Endpointmatched "hooks.slack.com/services/" · snaffler_ng-1.5.12/snaffler/classifiers/default_rules.py

Scanned versions

VersionVerdictScoreScanned (UTC)
1.5.12High risk452026-06-07

Block this in CI

PkgRadar gates snaffler-ng (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi snaffler-ng==1.5.12