PkgRadar

PyPI · pypi.org

traderbot

Remote Payload: matched "curl "

Why PkgRadar flagged 0.15.52

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · traderbot-0.15.52/install/traderbot-installer.sh

Scanned versions

VersionVerdictScoreScanned (UTC)
0.15.52Review122026-06-07
0.15.35Review122026-06-06
0.15.33Review122026-06-06
0.15.30Review122026-06-06
0.15.28Review122026-06-06
0.15.19Review122026-06-06
0.15.25Review122026-06-06
0.15.23Review122026-06-06
0.15.14Review122026-06-05
0.15.13Review122026-06-05
0.15.0Review242026-06-05
0.14.99Review242026-06-04
0.14.79Review242026-06-04
0.14.85Review242026-06-03
0.14.78Review242026-06-02
0.14.77Review242026-06-02
0.14.76Review242026-06-02
0.14.75Review242026-06-02
0.14.74Review242026-06-02
0.14.73Review242026-06-02
0.14.72Review242026-06-02

Block this in CI

PkgRadar gates traderbot (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi traderbot==0.15.52