| Package | Version | Risk Score | Verdict | Published ↓ | Checks Triggered |
|---|---|---|---|---|---|
| mudra-ml | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| agentfoundry | 1.5.60 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| skillforge-agent | 1.0.1 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionGit Repository History+1 |
| byted-sophon-cli | 0.0.1 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| bytedance-autocli | 0.0.1 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| byted-seed-android-tasks-badcase-2606 | 0.0.1 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| byted-modscript | 0.0.1 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| arkhe-db | 0.4.0 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| arkhe-core | 0.4.0 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| arkhe-config | 0.4.0 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| 3s-cnes-client | 0.2.1 |
0.6
|
safe | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| sadp-harness | 1.91 |
6.0
|
suspicious | 05 Jun 2026 | Code ObfuscationShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| sandbox-cloud-harbor-environment | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| SpiffWorkflow | 3.1.2 |
4.0
|
suspicious | 05 Jun 2026 | Code ObfuscationMaintainer History |
| Unified-python-sdk | 0.58.1 |
3.0
|
safe | 05 Jun 2026 | Maintainer History |
| sandbox-cloud-client | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| ForMoSA | 2.0.2 |
4.0
|
safe | 05 Jun 2026 | Suspicious Page LinksMaintainer History |
| superwatt | 0.1.2 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| retrieval-observatory | 0.1.2 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| Rhapso | 0.3.2 |
5.0
|
suspicious | 05 Jun 2026 | Code ObfuscationShell / Subprocess ExecutionMaintainer History |
| agenix-manager | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Code ObfuscationShell / Subprocess ExecutionMaintainer History |
| torchtitan-neuron | 0.0.1 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| nice-agent | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| extractx | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| therock-tools | 0.1.0 |
7.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionCredential Harvesting+1 |
| concordia-sdk-python | 1.0.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| felits | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| adsorption | 0.0.6 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| sellsyde-mcp | 1.0.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| NekoDL | 0.2.3 |
3.0
|
safe | 05 Jun 2026 | Shell / Subprocess ExecutionMaintainer History |
| HeronIntelligence-mcp | 1.4.5 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| OpenJarvis | 1.0.2 |
3.0
|
safe | 05 Jun 2026 | Maintainer History |
| netdiag-cli | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| triangle-api | 0.1.1 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| classmap-hanthink | 0.2.0 |
6.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| agent-executor | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| scm-python | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| jesco-tools | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| thonny-html-highlight | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| leanqueue | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| AbstractIntegratedModule | 0.3.1 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| pycdc | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| motive | 0.0.1 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| ms8-policy-core | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| 3lc-ultralytics | 0.3.1 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| FastLSQ | 0.2.5 |
4.0
|
safe | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |
| OptiLine-Py | 0.1.8.1 |
3.0
|
safe | 05 Jun 2026 | Maintainer History |
| snowpark-connect-deps-iceberg | 1.0.1 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| enterprise-domain-mapper | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| loggen-lg | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Credential HarvestingMaintainer History |