AI Analysis
Final verdict: SUSPICIOUS
The package is flagged as suspicious due to its high obfuscation risk, which could indicate hidden malicious functionality, despite no clear evidence of credential harvesting.
- High obfuscation risk (7/10)
- No evident credential risk
Per-check LLM notes
- Obfuscation: The code appears to use obfuscation techniques that may be used to hide the actual functionality of the script, potentially indicating malicious intent.
- Credentials: No clear patterns indicative of credential harvesting were found.
Heuristic Checks
Outbound Network Calls
No suspicious network call patterns found
Code Obfuscation
score 4.0
Found 2 obfuscation pattern(s)
rseet[gui]", file=__import__("sys").stderr, ) __import__("sys").exit(1) aps").stderr, ) __import__("sys").exit(1) app = QGuiApplication(sys.argv) app.setApp
Shell / Subprocess Execution
No shell execution patterns detected
Credential Harvesting
No credential harvesting patterns detected
Typosquatting
No typosquatting candidates detected
Registered Email Domain
Email domain looks legitimate: gmail.com>
Suspicious Page Links
All external links appear legitimate
Git Repository History
No GitHub repository linked
No GitHub repository link found
Maintainer History
score 8.0
4 maintainer concern(s) found
Only one version has ever been released — brand new packagePackage uploaded less than 24 hours ago (2026-06-05T08:48:05.000Z)Author name is missing or very shortAuthor "" appears to have only 1 package on PyPI (new or inactive account)