PyPI · pypi.org
sunglasses
Python Bun Js Exec: Python file references the Bun JavaScript runtime — cross-language execution
Why PkgRadar flagged 0.2.65
| Severity | Signal | Evidence |
|---|---|---|
| high | Python Bun Js Exec | Python file references the Bun JavaScript runtime — cross-language execution · sunglasses-0.2.65/sunglasses/patterns.py |
| high | Webhook Exfil Endpoint | matched "webhook.site" · sunglasses-0.2.65/sunglasses/patterns.py |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
0.2.67 | Review | 54 | 2026-06-15 |
0.2.66 | Review | 51 | 2026-06-11 |
0.2.65 | High risk | 136 | 2026-06-10 |
0.2.64 | High risk | 96 | 2026-06-10 |
0.2.63 | High risk | 96 | 2026-06-08 |
0.2.62 | High risk | 96 | 2026-06-07 |
0.2.61 | High risk | 87 | 2026-06-06 |
0.2.60 | High risk | 87 | 2026-06-05 |
0.2.59 | High risk | 87 | 2026-06-04 |
0.2.58 | High risk | 87 | 2026-06-03 |
0.2.57 | High risk | 87 | 2026-06-02 |
0.2.56 | High risk | 87 | 2026-05-31 |
0.2.55 | High risk | 87 | 2026-05-31 |
0.2.54 | High risk | 87 | 2026-05-30 |
0.2.53 | High risk | 87 | 2026-05-30 |
0.2.52 | High risk | 87 | 2026-05-30 |
0.2.51 | High risk | 87 | 2026-05-30 |
Campaign attribution
Block this in CI
pkgradar gate --ecosystem pypi sunglasses==0.2.65