| Package | Version | Risk Score | Verdict | Published ↓ | Checks Triggered |
|---|---|---|---|---|---|
| actaclad-agentguard | 1.2.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| secure-sandbox | 0.0.1 |
9.0
|
malicious | 05 Jun 2026 | Code ObfuscationShell / Subprocess ExecutionCredential HarvestingRegistered Email Domain+2 |
| torch-proj-r01 | — |
0.0
|
error | 05 Jun 2026 | — |
| torch-proj-r02 | — |
0.0
|
error | 05 Jun 2026 | — |
| apex-dispatch-api-client | 0.7.2 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| torch-proj-r16 | — |
0.0
|
error | 05 Jun 2026 | — |
| agentx-security-sdk | 0.2.11 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| amrita-sense | 0.2.4 |
3.0
|
safe | 05 Jun 2026 | Maintainer History |
| FunKitPy | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| sccircuits | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| preship | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionMaintainer History |
| aias-common | 1.15.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| airsmodel | 1.15.0 |
3.0
|
safe | 05 Jun 2026 | Maintainer History |
| huscy.data-acquisition-methods.questionnaire | 0.2.0a4 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| fitolit | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| skillrl | 1.0.0 |
7.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| l0l2learn | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| dataroma-mcp | 0.1.2 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| torch-proj-r06 | 1.0.0 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| tls-client-python | 1.14.0 |
5.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| Aerosol3D | 0.9.0 |
4.0
|
suspicious | 05 Jun 2026 | Code ObfuscationShell / Subprocess ExecutionMaintainer History |
| torch-proj-r04 | — |
0.0
|
error | 05 Jun 2026 | — |
| torch-proj-r05 | — |
0.0
|
error | 05 Jun 2026 | — |
| pinky-tools | 0.1.0.dev1 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| agentic-mcp-gateway | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionSuspicious Page LinksMaintainer History |
| temporal-parseable | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| qubiz-game-sdk | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| opensignalbox-macro | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| opensignalbox-interface | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| wottys-test | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Shell / Subprocess ExecutionSuspicious Page LinksGit Repository HistoryMaintainer History |
| opensignalbox-common | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| opensignalbox | 0.1.1 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| agently-devtools | 0.1.7 |
3.0
|
safe | 05 Jun 2026 | Suspicious Page LinksMaintainer History |
| prbs-eos | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| alix-form-filling-mcp-tool | 0.7.0 |
3.0
|
safe | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| almanak | 2.17.0 |
3.0
|
safe | 05 Jun 2026 | Maintainer History |
| AutoSQUID | 0.1.3 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| trigix-node-sdk | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Suspicious Page LinksGit Repository HistoryMaintainer History |
| odoo-addon-account-move-pivot-view | 18.0.1.0.0.2 |
4.0
|
safe | 05 Jun 2026 | Suspicious Page LinksGit Repository HistoryMaintainer History |
| dynamic-skill-compiler | 0.1.1 |
4.0
|
suspicious | 05 Jun 2026 | Credential HarvestingMaintainer History |
| hirebase | 0.1.1 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| testy-pytest-adapter | 1.0.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| ghost-reader | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCredential HarvestingGit Repository HistoryMaintainer History |
| collector-phone-android-contract | 1.0.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| torch-proj-r03 | 1.0.0 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| usecix | 1.0.6 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionCredential HarvestingMaintainer History |
| sentraguard-sdk | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| Vortiq | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| xiaoguai | 1.10.5 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| plivo-mirror-v5 | 0.5.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |