| Package | Version | Risk Score | Verdict | Published ↓ | Checks Triggered |
|---|---|---|---|---|---|
| cheminot | 1.0.0 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| malzapper-core | 2.0.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| myrm-agent-harness | 0.1.0rc1 |
6.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| agentgrep | 0.1.0a17 |
3.0
|
suspicious | 05 Jun 2026 | Shell / Subprocess ExecutionMaintainer History |
| diff-fret | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| diff-epr | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| diff-em | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| diff-hdx | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| antchain-insurance-saas | 1.12.27 |
4.0
|
safe | 05 Jun 2026 | Code ObfuscationSuspicious Page LinksMaintainer History |
| langchain-talor-serp | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| nodus-workflow | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| ap-client | 0.1.12 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| aimet-torch | 2.32.1 |
2.0
|
safe | 05 Jun 2026 | Maintainer History |
| alibabacloud-modelstudio20260210 | 1.2.0 |
4.0
|
safe | 05 Jun 2026 | Code ObfuscationSuspicious Page LinksMaintainer History |
| bp3m | 2.0.0 |
5.0
|
suspicious | 05 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| airoles | 0.6.2 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| ltc-kl | 0.1.1 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| agent-first-data | 0.12.1 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| bankofai-x402-gateway | 0.6.1b0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionSuspicious Page Links+2 |
| localbiz-page | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| xiaokeer.agent.harness | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Shell / Subprocess ExecutionMaintainer History |
| munk | 0.0.1 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| metabrain | 1.0.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| nfctester | 0.0.37 |
5.0
|
suspicious | 05 Jun 2026 | Code ObfuscationMaintainer History |
| WebBrokerAPI | 1.2606.502 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| lantern-sdk | 0.1.1 |
4.0
|
suspicious | 05 Jun 2026 | Code ObfuscationMaintainer History |
| mcp-registry-client | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| air-blackbox | 1.13.0 |
7.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionCredential Harvesting+1 |
| hartrace | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationGit Repository HistoryMaintainer History |
| nemo-cli | 0.0.1 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| n0brains-cli | 1.0.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| outfitter-dispatch | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| antchain-testhkfinal | 1.0.21 |
5.0
|
suspicious | 05 Jun 2026 | Code ObfuscationSuspicious Page LinksMaintainer History |
| deepcloak | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| loongsuite-instrumentation-wildtool | 0.6.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| factsage-compound | 0.1.1 |
4.0
|
safe | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| dlz-logger | 0.2.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| aicu-scanner | 0.8.1 |
8.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionCredential Harvesting+2 |
| loongsuite-instrumentation-widesearch | 0.6.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| TALLSorts | 0.3 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| etap-clf | 0.1.1 |
5.0
|
suspicious | 05 Jun 2026 | Code ObfuscationMaintainer History |
| mudra-ml | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| agentfoundry | 1.5.60 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| skillforge-agent | 1.0.1 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionGit Repository History+1 |
| byted-sophon-cli | 0.0.1 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| bytedance-autocli | 0.0.1 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| byted-seed-android-tasks-badcase-2606 | 0.0.1 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| byted-modscript | 0.0.1 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| arkhe-db | 0.4.0 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| arkhe-core | 0.4.0 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |