| Package | Version | Risk Score | Verdict | Published ↓ | Checks Triggered |
|---|---|---|---|---|---|
| rag-llm-infra | 0.1.0 |
5.0
|
suspicious | 04 Jun 2026 | Git Repository HistoryMaintainer History |
| cherry-docs | 0.2.0 |
6.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| agave | 1.5.5 |
6.0
|
suspicious | 04 Jun 2026 | Code ObfuscationCredential HarvestingMaintainer History |
| skill-scan-cli | 0.1.0 |
5.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| byn | 0.0.1 |
6.0
|
suspicious | 04 Jun 2026 | Git Repository HistoryMaintainer History |
| ai-for-research | 1.0.3 |
5.0
|
suspicious | 04 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| sparsevlm | 0.1.0 |
4.0
|
suspicious | 04 Jun 2026 | Git Repository HistoryMaintainer History |
| agents-remember-mcp | 2.3.3 |
4.0
|
suspicious | 04 Jun 2026 | Shell / Subprocess ExecutionMaintainer History |
| loredocs-cli | 0.1.0a1 |
6.0
|
suspicious | 04 Jun 2026 | Git Repository HistoryMaintainer History |
| loreconvo-cli | 0.1.0a1 |
4.0
|
suspicious | 04 Jun 2026 | Git Repository HistoryMaintainer History |
| rustdl | 0.2.0 |
6.0
|
suspicious | 04 Jun 2026 | Git Repository HistoryMaintainer History |
| tms320c6x-disassembler | 1.0.0 |
6.0
|
suspicious | 04 Jun 2026 | Code ObfuscationGit Repository HistoryMaintainer History |
| ampio-mqtt | 0.6.0 |
4.0
|
suspicious | 04 Jun 2026 | Git Repository HistoryMaintainer History |
| agledger | 0.8.15 |
5.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCode ObfuscationGit Repository HistoryMaintainer History |
| PyMkDB | 0.1.12 |
4.0
|
suspicious | 04 Jun 2026 | Git Repository HistoryMaintainer History |
| allspeak-ai | 260517181653 |
7.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionGit Repository History+1 |
| CryEx.v2 | 2.0.3 |
4.0
|
suspicious | 04 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| alogram-payrisk | 0.2.23 |
4.0
|
suspicious | 04 Jun 2026 | Git Repository HistoryMaintainer History |
| agent-lsp | 0.13.0 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| ambara | 0.7.0 |
6.0
|
suspicious | 04 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| ai-houkai | 0.5.0 |
6.0
|
suspicious | 04 Jun 2026 | Shell / Subprocess ExecutionMaintainer History |
| annet | 4.2.0 |
3.0
|
suspicious | 04 Jun 2026 | Shell / Subprocess ExecutionMaintainer History |
| MelihMSA | 0.1.0 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| any2md-cli | 0.1.3 |
6.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionGit Repository History+1 |
| FlowPlotPy | 0.9.0 |
6.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| aigenguard | 0.8.4 |
8.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionCredential Harvesting+1 |
| FastRAMQPI | 14.6.0 |
5.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsSuspicious Page LinksMaintainer History |
| agora-moss | 0.0.1 |
4.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsMaintainer History |
| aigentsy-langgraph | 0.3.0 |
5.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCode ObfuscationMaintainer History |
| aaep-narrator-bridge | 0.1.0 |
4.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| aaep-cli-debug | 1.0.0 |
4.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| aaep-ext-medical-hipaa | 1.0.0 |
4.0
|
suspicious | 04 Jun 2026 | Git Repository HistoryMaintainer History |
| aaep-ext-african-languages | 1.0.0 |
4.0
|
suspicious | 04 Jun 2026 | Git Repository HistoryMaintainer History |
| Mimiry | 0.2.1 |
8.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionGit Repository History+1 |
| ain-state-compiler | 0.4.0 |
7.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionCredential HarvestingGit Repository History+1 |
| agi-evals | 0.1.0 |
6.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionMaintainer History |
| D-SafeLogger | 0.4.1 |
4.0
|
suspicious | 04 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| antihook | 0.1.2 |
5.0
|
suspicious | 04 Jun 2026 | Suspicious Page LinksMaintainer History |
| agent-control-specification | 0.3.1b0 |
6.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionMaintainer History |
| claudecast | 0.1.0 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| sast | 0.1.1 |
6.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |
| azure-ai-agentserver-ghcopilot | 0.0.0 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| loghunt | 0.1.0.dev0 |
7.0
|
suspicious | 04 Jun 2026 | Code ObfuscationCredential HarvestingMaintainer History |
| akashcli | 3.0.0 |
6.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |
| beeui | 0.13.0 |
6.0
|
suspicious | 04 Jun 2026 | Shell / Subprocess ExecutionCredential HarvestingSuspicious Page LinksMaintainer History |
| azure-storage-extensions | 0.0.0 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| geo-audit | 0.1.0 |
5.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| amzn-nova-forge | 1.4.9 |
6.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionMaintainer History |
| mubit-llama-index | 0.6.0 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agnt | 0.13.15 |
6.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |