| Package | Version | Risk Score | Verdict | Published ↓ | Checks Triggered |
|---|---|---|---|---|---|
| agenthog | 0.3.0 |
5.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCode ObfuscationMaintainer History |
| Telethon-MCUB | 1.43.17 |
5.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionCredential HarvestingMaintainer History |
| agentscope-runtime | 1.1.6.post2 |
5.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsSuspicious Page LinksMaintainer History |
| adaptive-reliability-layer | 0.3.1 |
5.0
|
suspicious | 04 Jun 2026 | Code ObfuscationShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| aiand | 0.1.0 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| SplashScreen-engine | 2.0.7 |
4.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsMaintainer History |
| a2y-smartray | 0.8.9 |
4.0
|
suspicious | 04 Jun 2026 | Suspicious Page LinksMaintainer History |
| antfly-sdk | 0.0.2.dev2 |
4.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| Jarvis-HEP | 1.6.24 |
6.0
|
suspicious | 04 Jun 2026 | Code ObfuscationShell / Subprocess ExecutionMaintainer History |
| PEGGHy-Viewer | 1.1.6 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agent6 | 0.0.5 |
6.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |
| antma | 0.2.0 |
5.0
|
suspicious | 04 Jun 2026 | Git Repository HistoryMaintainer History |
| anygarden | 0.9.1 |
5.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCode ObfuscationMaintainer History |
| DrissionGet | 1.2.1 |
6.0
|
suspicious | 04 Jun 2026 | Registered Email DomainSuspicious Page LinksMaintainer History |
| ai-relay | 0.4.30 |
7.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |
| agent-signing | 0.2.0 |
5.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCode ObfuscationGit Repository HistoryMaintainer History |
| aicd | 1.5.6 |
7.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsCredential HarvestingTyposquattingMaintainer History |
| aisurface | 1.0.2 |
6.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionCredential HarvestingGit Repository History+1 |
| agi-env | 2026.6.4 |
6.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionCredential HarvestingMaintainer History |
| agi-pages | 2026.6.4 |
5.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agi-app-flight-telemetry | 2026.6.4 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agi-node | 2026.6.4 |
6.0
|
suspicious | 04 Jun 2026 | Code ObfuscationShell / Subprocess ExecutionMaintainer History |
| agi-app-sklearn-pipeline | 2026.6.4 |
5.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agi-apps | 2026.6.4 |
5.0
|
suspicious | 04 Jun 2026 | Shell / Subprocess ExecutionMaintainer History |
| agi-app-mission-decision | 2026.6.4 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agi-page-promotion-gate | 2026.6.4 |
5.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agi-app-multi-dag | 2026.6.4 |
5.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agi-app-tescia-diagnostic | 2026.6.4 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agi-app-weather-forecast | 2026.6.4 |
5.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agi-core | 2026.6.4 |
5.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agi-gui | 2026.6.4 |
5.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agi-cluster | 2026.6.4 |
5.0
|
suspicious | 04 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |
| agi-app-pandas-execution | 2026.6.4 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agi-app-pytorch-playground | 2026.6.4 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agi-app-uav-relay-queue | 2026.6.4 |
4.0
|
suspicious | 04 Jun 2026 | Maintainer History |
| agent-sudo-mcp | 0.5.4 |
6.0
|
suspicious | 04 Jun 2026 | Shell / Subprocess ExecutionCredential HarvestingMaintainer History |
| CiliaTracks | 1.1.6 |
3.0
|
suspicious | 03 Jun 2026 | Code ObfuscationMaintainer History |
| archinfo | 9.2.221 |
4.0
|
suspicious | 03 Jun 2026 | Code ObfuscationMaintainer History |
| angr-management | 9.2.221 |
4.0
|
suspicious | 03 Jun 2026 | Maintainer History |
| abstract-queries | 0.0.0.115 |
3.0
|
suspicious | 03 Jun 2026 | Git Repository HistoryMaintainer History |
| abstract-security | 0.81 |
4.0
|
suspicious | 03 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| abstract-database | 0.0.2.185 |
4.0
|
suspicious | 03 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| amplitude-ai | 1.8.0 |
6.0
|
suspicious | 03 Jun 2026 | Outbound Network CallsCode ObfuscationMaintainer History |
| aiidalab-widgets-base | 2.5.1 |
6.0
|
suspicious | 03 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionCredential Harvesting+2 |
| alvz-lenguaje | 0.18.0 |
6.0
|
suspicious | 03 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |
| MEGnet-neuro | 0.3.3 |
5.0
|
suspicious | 03 Jun 2026 | Code ObfuscationMaintainer History |
| aplicacion-ventas-ctipan | 0.1.1 |
4.0
|
suspicious | 03 Jun 2026 | Git Repository HistoryMaintainer History |
| anch-hash | 1.0.0 |
4.0
|
suspicious | 03 Jun 2026 | Git Repository HistoryMaintainer History |
| Dev10x | 0.78.0 |
4.0
|
suspicious | 03 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |
| abicheck | 0.3.0 |
5.0
|
suspicious | 03 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |