PkgRadar

PyPI · pypi.org

snipara-sandbox

Py Import Time Subprocess: subprocess call — process spawning.

Why PkgRadar flagged 2.2.7

SeveritySignalEvidence
mediumPy Import Time Subprocesssubprocess call — process spawning. · snipara_sandbox-2.2.7/src/rlm/tools/builtin/__init__.py

Scanned versions

VersionVerdictScoreScanned (UTC)
2.2.7Review322026-05-31
2.2.6Low risk02026-05-31
2.2.5Low risk02026-05-29
2.2.3Low risk02026-05-29
2.2.2Low risk02026-05-29

Block this in CI

PkgRadar gates snipara-sandbox (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi snipara-sandbox==2.2.7