PkgRadar

PyPI · pypi.org

tritonparse

Remote Payload: matched "curl "

Why PkgRadar flagged 0.5.1.dev20260610083018

SeveritySignalEvidence
mediumRemote Payloadmatched "curl " · tritonparse-0.5.1.dev20260610083018/.ci/setup.sh

Scanned versions

VersionVerdictScoreScanned (UTC)
0.5.1.dev20260610083018Review82026-06-10
0.5.0Review82026-06-10
0.4.5.dev20260604083413Review82026-06-04
0.4.5.dev20260527082648Review82026-05-30
0.4.5.dev20260528082735Review232026-05-28

Block this in CI

PkgRadar gates tritonparse (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi tritonparse==0.5.1.dev20260610083018