| Package | Version | Risk Score | Verdict | Published ↓ | Checks Triggered |
|---|---|---|---|---|---|
| aiguard-safety | 0.7.5.9 |
8.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| agentsentinel-cli | 0.9.2 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| aichain-sdk | 0.1.4 |
3.0
|
safe | 05 Jun 2026 | Code ObfuscationMaintainer History |
| FERS | 0.1.64 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsTyposquattingMaintainer History |
| aiofastnet | 0.9.0 |
3.0
|
safe | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| acoustools | 1.1.2 |
4.0
|
suspicious | 05 Jun 2026 | Code ObfuscationMaintainer History |
| ai-jury | 1.2.0 |
4.0
|
safe | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |
| agent-observability-sdk | 0.2.1 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| GDAL | 3.13.1 |
4.0
|
safe | 05 Jun 2026 | Code ObfuscationShell / Subprocess ExecutionSuspicious Page LinksMaintainer History |
| agentengine-sdk-python | 0.6.2 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| aicqSDK | 0.8.2 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| aether-ai-cli | 2.2.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionCredential HarvestingGit Repository History+1 |
| AgentRunnerContainer | 0.2.0 |
0.0
|
error | 05 Jun 2026 | — |
| DrissionPage | 4.1.1.4 |
5.0
|
suspicious | 05 Jun 2026 | Code ObfuscationRegistered Email DomainMaintainer History |
| AWPC | 0.0.1.2 |
0.0
|
error | 05 Jun 2026 | — |
| PyOpenMagnetics | 1.4.4 |
3.0
|
safe | 05 Jun 2026 | Maintainer History |
| AOAFetch | 1.0 |
0.0
|
error | 05 Jun 2026 | — |
| ai-provider-watch | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| Hypercrystal | 0.2.23 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| LightAgent | 0.8.0 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionRegistered Email DomainSuspicious Page Links+1 |
| Bloomerp | 1.8.0 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| agently | 4.1.3.5 |
4.0
|
suspicious | 05 Jun 2026 | Shell / Subprocess ExecutionSuspicious Page LinksMaintainer History |
| pull-cli | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| sentinel-remediation | 0.1.0 |
7.0
|
suspicious | 05 Jun 2026 | Code ObfuscationShell / Subprocess ExecutionCredential HarvestingGit Repository History+1 |
| ado-team-activity-mcp | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| nexus-enterprise-agent | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| compiler-claw | 1.0.10 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| logspine | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| scopos | 2.0.0 |
6.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| OpenGeode-Stochastic | 1.19.8 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| ai-agent-bridge | 0.2.0 |
4.0
|
suspicious | 05 Jun 2026 | Shell / Subprocess ExecutionMaintainer History |
| decision-provenance | 1.0.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| agent-catalog-cli | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| bragi-theme-zelda | 0.1.1 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| RadFiled3D | 1.3.3 |
6.0
|
suspicious | 05 Jun 2026 | Code ObfuscationShell / Subprocess ExecutionMaintainer History |
| resqui | — |
0.0
|
error | 05 Jun 2026 | — |
| n4ax | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | TyposquattingGit Repository HistoryMaintainer History |
| arkclaw-webchat-cli | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| agentify-core | 0.5.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionCredential HarvestingMaintainer History |
| m2k-skills-tools | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsShell / Subprocess ExecutionMaintainer History |
| yadgar | 5.46.0 |
1.1
|
safe | 05 Jun 2026 | Suspicious Page LinksMaintainer History |
| IRKsome | 2026.0.0 |
0.7
|
safe | 05 Jun 2026 | Maintainer History |
| silukman-image-vectorizer | — |
0.0
|
error | 05 Jun 2026 | — |
| halo-format-claude | 0.1.1 |
5.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| halo-format | 0.1.1 |
1.0
|
safe | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| aegis-trust | 0.9.2 |
4.0
|
safe | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| agent-hub-mcp | 0.2.0 |
4.0
|
suspicious | 05 Jun 2026 | Suspicious Page LinksMaintainer History |
| jvlib | 0.0.1 |
5.0
|
suspicious | 05 Jun 2026 | Code ObfuscationShell / Subprocess ExecutionMaintainer History |
| huggingface-api-haystack | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| tex2word | 0.8.1 |
4.0
|
suspicious | 05 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |