| Package | Version | Risk Score | Verdict | Published ↓ | Checks Triggered |
|---|---|---|---|---|---|
| aletheiadb | 0.1.2 |
4.0
|
suspicious | 01 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| ai-vendor-specs | 0.1.1 |
4.0
|
suspicious | 01 Jun 2026 | Maintainer History |
| aimeat-crewai | 0.3.8 |
4.0
|
suspicious | 01 Jun 2026 | Outbound Network CallsMaintainer History |
| aibrain | 1.8.7 |
3.0
|
safe | 01 Jun 2026 | Maintainer History |
| alcatrazer | 0.1.1 |
4.0
|
suspicious | 01 Jun 2026 | Shell / Subprocess ExecutionCredential HarvestingMaintainer History |
| antchain-sgsk-sktest | 1.1.0 |
4.0
|
safe | 01 Jun 2026 | Code ObfuscationSuspicious Page LinksMaintainer History |
| ao-kernel | 4.1.0 |
2.0
|
safe | 01 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| alexwlchan-chives | 42 |
4.0
|
safe | 01 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |
| agnostic-security | 4.30.0 |
8.0
|
malicious | 01 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionCredential Harvesting+2 |
| airflow-plugin-watchdog | 0.6.4 |
3.0
|
safe | 01 Jun 2026 | Maintainer History |
| aircover-pipeline | 1.0.3 |
4.0
|
suspicious | 01 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| anygarden-machine | 0.8.1 |
7.0
|
suspicious | 01 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionCredential Harvesting+1 |
| altiplano | 0.2.2 |
4.0
|
suspicious | 01 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| anexus-sdk | 0.3.0 |
4.0
|
suspicious | 01 Jun 2026 | Outbound Network CallsMaintainer History |
| ai-dino-in-terminal | 0.1.1 |
5.0
|
suspicious | 01 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| ai-nd-co-agent-tools | 0.7.6 |
6.0
|
suspicious | 01 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| ait-vcs | 1.7.2 |
3.0
|
safe | 01 Jun 2026 | Shell / Subprocess ExecutionMaintainer History |
| api-engine-xin | 0.0.19 |
6.0
|
suspicious | 01 Jun 2026 | Outbound Network CallsCode ObfuscationSuspicious Page LinksMaintainer History |
| aiochlite | 1.2.0 |
4.0
|
suspicious | 01 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| alas-ce0-client | 6.1.2 |
5.0
|
suspicious | 01 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| alethic-ism-db | 1.0.50 |
4.0
|
suspicious | 31 May 2026 | Maintainer History |
| ai-devsec-gateway | 1.3.2 |
5.0
|
suspicious | 31 May 2026 | Outbound Network CallsShell / Subprocess ExecutionCredential HarvestingMaintainer History |
| alethic-ism-core | 1.0.56 |
6.0
|
suspicious | 31 May 2026 | Outbound Network CallsCode ObfuscationMaintainer History |
| almasim | 2.1.16 |
5.0
|
suspicious | 31 May 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |
| ai-decision-council | 1.4.2 |
3.0
|
safe | 31 May 2026 | Outbound Network CallsMaintainer History |
| aicheat | 0.7.0 |
7.0
|
suspicious | 31 May 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionMaintainer History |
| aicommand | 0.1.5 |
6.0
|
suspicious | 31 May 2026 | Outbound Network CallsCode ObfuscationCredential HarvestingGit Repository History+1 |
| aiosmtplib | 5.1.1 |
4.0
|
suspicious | 31 May 2026 | Code ObfuscationMaintainer History |
| amnesic | 0.1.17 |
6.0
|
suspicious | 31 May 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| airflow-turbine | 0.5.13 |
3.0
|
safe | 31 May 2026 | Maintainer History |
| ai-code-switcher | 0.1.15 |
6.0
|
suspicious | 31 May 2026 | Shell / Subprocess ExecutionMaintainer History |
| ansible-docsmith | 2.0.2 |
3.0
|
safe | 31 May 2026 | Maintainer History |
| alchemydetect | 0.5.1 |
4.0
|
suspicious | 31 May 2026 | Code ObfuscationMaintainer History |
| alice-net | 0.1.4 |
3.0
|
suspicious | 31 May 2026 | Maintainer History |
| aiowiserbyfeller | 1.1.0 |
3.0
|
safe | 31 May 2026 | Maintainer History |
| aioaudiobookshelf | 0.1.21 |
3.0
|
safe | 31 May 2026 | Maintainer History |
| aiosendspin | 6.0.1 |
4.0
|
suspicious | 31 May 2026 | Code ObfuscationMaintainer History |
| ai-context-injector | 1.0.0 |
1.0
|
safe | 31 May 2026 | Maintainer History |
| agno-ejentum | 0.2.0 |
4.0
|
safe | 31 May 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| apii | 0.1.3 |
8.0
|
suspicious | 31 May 2026 | Outbound Network CallsCode ObfuscationTyposquattingSuspicious Page Links+2 |
| agpack | 0.4.2 |
7.0
|
suspicious | 31 May 2026 | Shell / Subprocess ExecutionTyposquattingGit Repository HistoryMaintainer History |
| androidperf | 0.2.1 |
4.0
|
suspicious | 31 May 2026 | Shell / Subprocess ExecutionMaintainer History |
| algovoi-receipt-sentinel | 0.1.0 |
4.0
|
suspicious | 31 May 2026 | Git Repository HistoryMaintainer History |
| ai-blackteam | 1.7.1 |
7.0
|
suspicious | 31 May 2026 | Credential HarvestingGit Repository HistoryMaintainer History |
| ai-interior-design-info | 0.1.1 |
4.0
|
safe | 31 May 2026 | Maintainer History |
| aillmcleaner | 0.2.1 |
4.0
|
suspicious | 31 May 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| algovoi-webhook-verifier | 0.1.0 |
4.0
|
suspicious | 31 May 2026 | Git Repository HistoryMaintainer History |
| ai-dev-harness | 0.2.2 |
3.0
|
safe | 31 May 2026 | Git Repository HistoryMaintainer History |
| anonymize-mcp | 0.10.0 |
4.0
|
suspicious | 31 May 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| aird | 0.4.22 |
5.0
|
suspicious | 31 May 2026 | Outbound Network CallsTyposquattingMaintainer History |