PkgRadar

PyPI · pypi.org

truenex-memory

Py Import Time Eval Exec: Python eval()/exec() called on a string.

Why PkgRadar flagged 0.3.0

SeveritySignalEvidence
mediumPy Import Time Eval ExecPython eval()/exec() called on a string. · truenex_memory-0.3.0/.venv_clean/Lib/site-packages/pip/_vendor/pkg_resources/__init__.py
mediumPy Import Time Eval ExecPython eval()/exec() called on a string. · truenex_memory-0.3.0/.venv_clean/Lib/site-packages/pythonwin/pywin/framework/editor/__init__.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.3.0Review732026-06-07
0.2.9Review732026-06-07
0.2.8Review732026-06-03
0.2.7Review732026-06-03
0.2.6Review732026-06-03
0.2.5Review732026-06-03
0.2.4Review732026-06-03
0.2.3Review732026-06-03
0.2.2Review732026-06-03
0.2.1Review732026-06-02
0.2.0Review732026-06-02
0.2.0a2Review732026-06-02
0.2.0a1Review732026-06-02

Block this in CI

PkgRadar gates truenex-memory (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi truenex-memory==0.3.0