| Package | Version | Risk Score | Verdict | Published ↓ | Checks Triggered |
|---|---|---|---|---|---|
| rubam | 0.3.12 |
5.0
|
suspicious | 05 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| tzla | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| CheeseAPI | 2.0.6 |
5.0
|
suspicious | 05 Jun 2026 | Code ObfuscationMaintainer History |
| Tracelit-SDK | 0.1.4 |
5.0
|
suspicious | 05 Jun 2026 | Code ObfuscationMaintainer History |
| aws-cloudwatch | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| nopaddle | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsSuspicious Page LinksGit Repository HistoryMaintainer History |
| natilah-smre | 0.1.0 |
7.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationGit Repository HistoryMaintainer History |
| captureoutput | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| lark-channel-sdk | 1.0.0 |
4.0
|
safe | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| skill-weave | 0.3.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| riftbound-scraper | 1.0.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| olw-protocol | 1.0.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| tianjian-api | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsSuspicious Page LinksMaintainer History |
| cwg | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Code ObfuscationTyposquattingMaintainer History |
| ai4pa_opencode_sdk | 0.17.0 |
4.0
|
suspicious | 05 Jun 2026 | Suspicious Page LinksMaintainer History |
| llama-index-llms-duel | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| langchain-duel | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| parseet | 0.2.0 |
6.0
|
suspicious | 05 Jun 2026 | Code ObfuscationMaintainer History |
| logo-hunter | — |
0.0
|
error | 05 Jun 2026 | — |
| dialectica | 0.3.1 |
4.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| luanti_cli | 2.0.4 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| pylhb-qrcode | 1.0.0 |
5.0
|
suspicious | 05 Jun 2026 | Registered Email DomainGit Repository HistoryMaintainer History |
| ai302 | 1.0.0 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionMaintainer History |
| aggregationslib | 0.1.6 |
4.0
|
safe | 05 Jun 2026 | Maintainer History |
| pydalec | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| taiwan-payroll | 1.0.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| PyGeoFetch | 0.1.4 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationCredential HarvestingGit Repository History+1 |
| edupage-mcp | 0.1.0 |
2.0
|
safe | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| ripple-impact-mcp | 1.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| nyra | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| logohunter | 0.1.2 |
2.0
|
safe | 05 Jun 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| torch-proj-r13 | unknown |
10.0
|
quarantined | 05 Jun 2026 | PyPI Quarantine |
| clitag | 1.0.0 |
4.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| goldenmatch-embed | 0.1.0 |
5.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| AOT-biomaps | 2.9.731 |
5.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionGit Repository History+1 |
| cydeai-client | 0.1.1 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionMaintainer History |
| braintoken-downloader | 0.1.0 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| auto-rotate | 0.1.0 |
4.0
|
suspicious | 05 Jun 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| pharnoss | 0.2.0 |
4.0
|
suspicious | 05 Jun 2026 | Shell / Subprocess ExecutionMaintainer History |
| BharatFinTrack | 0.3.1 |
4.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsMaintainer History |
| ag2 | 0.13.3 |
6.0
|
suspicious | 05 Jun 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionTyposquatting+1 |
| agent-os-server | 0.5.10 |
4.0
|
suspicious | 05 Jun 2026 | Suspicious Page LinksMaintainer History |
| hydros-agent-sdk | 0.1.4 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| eigh-cuda120 | 0.3.12 |
5.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| torch-proj-r14 | — |
0.0
|
error | 05 Jun 2026 | — |
| torch-proj-r15 | — |
0.0
|
error | 05 Jun 2026 | — |
| act-tester | 0.4.0 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| hydros-agent-sdk-preview-curryzxh | 0.1.4.dev1 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |
| dgsolve | 0.1.0a0 |
6.0
|
suspicious | 05 Jun 2026 | Git Repository HistoryMaintainer History |
| pytest-api-contract | 0.3.0 |
6.0
|
suspicious | 05 Jun 2026 | Maintainer History |