PkgRadar

PyPI · pypi.org

stripe

Remote Payload: matched "curl "

Why PkgRadar flagged 15.3.0a1

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · stripe-15.3.0a1/stripe/_http_client.py

Scanned versions

VersionVerdictScoreScanned (UTC)
15.2.1Low risk02026-06-12
15.3.0a3Low risk02026-06-10
15.3.0a2Low risk02026-06-03
10.5.0Low risk02026-06-01
11.4.1Low risk02026-06-01
15.3.0a1Review32026-05-27
15.3.0b1Review32026-05-27
15.2.0Review32026-05-27

Block this in CI

PkgRadar gates stripe (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi stripe==15.3.0a1