PyPI · pypi.org
taskcluster-taskgraph
Remote Payload: matched "curl "
Why PkgRadar flagged 24.0.0
| Severity | Signal | Evidence |
|---|---|---|
| medium | Remote Payload | matched "curl " · taskcluster_taskgraph-24.0.0/taskcluster/docker/run-task/system-setup.sh |
| medium | Remote Payload | matched "curl " · taskcluster_taskgraph-24.0.0/taskcluster/docker/skopeo/push_image.sh |
Scanned versions
| Version | Verdict | Score | Scanned (UTC) |
|---|---|---|---|
24.0.0 | Review | 12 | 2026-06-03 |
23.2.0 | Review | 12 | 2026-06-03 |
23.1.0 | Review | 41 | 2026-05-26 |
Block this in CI
pkgradar gate --ecosystem pypi taskcluster-taskgraph==24.0.0