PkgRadar

PyPI · pypi.org

wisent-compute

Py Import Time Subprocess: subprocess call — process spawning.

Why PkgRadar flagged 0.4.345

SeveritySignalEvidence
mediumPy Import Time Subprocesssubprocess call — process spawning. · wisent_compute-0.4.345/wisent_compute/failure_fixer/__init__.py
mediumPy Import Time Subprocesssubprocess call — process spawning. · wisent_compute-0.4.345/wisent_compute/providers/local/helpers/__init__.py
highPy Import Time Network CallNetwork call (urllib/requests/httpx/http.client) at install or import time. · wisent_compute-0.4.345/wisent_compute/providers/local/helpers/__init__.py
mediumRemote Payloadmatched "curl " · wisent_compute-0.4.345/wisent_compute/templates/startup_gpu.sh
mediumRemote Payloadmatched "curl " · wisent_compute-0.4.345/wisent_compute/templates/startup_gpu_agent.sh
mediumRemote Payloadmatched "curl " · wisent_compute-0.4.345/wisent_compute/templates/startup_gpu_agent_azure.sh
mediumCredential file accessmatched "GOOGLE_APPLICATION_CREDENTIALS" · wisent_compute-0.4.345/wisent_compute/deploy/local_install.py

Scanned versions

VersionVerdictScoreScanned (UTC)
0.4.345High risk1222026-06-08
0.4.344High risk1222026-06-08
0.4.343High risk1222026-06-08
0.4.342High risk1222026-06-08
0.4.341High risk1222026-06-08
0.4.340High risk1222026-06-08
0.4.339High risk1222026-06-08
0.4.338High risk1222026-06-08
0.4.337High risk1222026-06-08
0.4.336High risk1222026-06-08
0.4.335High risk1222026-06-08
0.4.334High risk1222026-06-08
0.4.333High risk1222026-06-08
0.4.332High risk1222026-06-08
0.4.331High risk1222026-06-08
0.4.330High risk1222026-06-03
0.4.329High risk1222026-06-03
0.4.328High risk1222026-06-02
0.4.327High risk1222026-06-02
0.4.326High risk1222026-06-02
0.4.325High risk1222026-06-02
0.4.324High risk1222026-06-02
0.4.323High risk1222026-06-02
0.4.322High risk1222026-06-01
0.4.321High risk1222026-06-01
0.4.320High risk1222026-06-01
0.4.319High risk1222026-06-01
0.4.318High risk1222026-06-01
0.4.317High risk1222026-06-01
0.4.316High risk1222026-06-01
0.4.315High risk1222026-06-01
0.4.314High risk1222026-06-01
0.4.313High risk1222026-06-01
0.4.312High risk1222026-06-01
0.4.311High risk1222026-06-01
0.4.310High risk1222026-06-01
0.4.309High risk1222026-06-01
0.4.308High risk1222026-05-31
0.4.307High risk1222026-05-31
0.4.306High risk1222026-05-30
0.4.305High risk1222026-05-30
0.4.304High risk1222026-05-30
0.4.303High risk1222026-05-30
0.4.302High risk1222026-05-30
0.4.301High risk1222026-05-30
0.4.300High risk1222026-05-30
0.4.299High risk1222026-05-30
0.4.298High risk1222026-05-30
0.4.297High risk1222026-05-30
0.4.296High risk1222026-05-30
0.4.295High risk1222026-05-30
0.4.294High risk1222026-05-30
0.4.293High risk1222026-05-30
0.4.292High risk1222026-05-30
0.4.291High risk1222026-05-30
0.4.290High risk1222026-05-30

Block this in CI

PkgRadar gates wisent-compute (and every other dependency) before it merges. One line in your pipeline:

pkgradar gate --ecosystem pypi wisent-compute==0.4.345