Browse Scanned Packages
Real-time feed of parsed packages with malware warnings and risk evaluations.
| Package | Version | Risk Score | Verdict | Published ↓ | Checks Triggered |
|---|---|---|---|---|---|
| arize-phoenix-client | 2.7.0 |
4.0
|
suspicious | 15 May 2026 | Outbound Network CallsCode ObfuscationMaintainer History |
| assort-test | 0.1.2 |
4.0
|
suspicious | 15 May 2026 | Maintainer History |
| agentscore-cli | 0.1.2 |
4.0
|
suspicious | 15 May 2026 | Outbound Network CallsShell / Subprocess ExecutionCredential HarvestingGit Repository History+1 |
| agentcard-disco | 0.2.1 |
5.0
|
suspicious | 15 May 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| afwf_md5 | 0.1.2 |
4.0
|
suspicious | 14 May 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| awslabs.eks-mcp-server | 0.1.31 |
5.0
|
suspicious | 14 May 2026 | Outbound Network CallsCode ObfuscationCredential HarvestingSuspicious Page Links+1 |
| ai | 0.2.0 |
8.0
|
suspicious | 14 May 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionTyposquatting+1 |
| b45 | 0.2.3 |
6.0
|
suspicious | 14 May 2026 | Suspicious Page LinksMaintainer History |
| apple-basefm | 1.0.5 |
4.0
|
suspicious | 14 May 2026 | Code ObfuscationShell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| aegis-guardian | 1.0.0 |
4.0
|
suspicious | 14 May 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| agent-skillet | 0.2.0 |
4.0
|
suspicious | 14 May 2026 | Outbound Network CallsCredential HarvestingMaintainer History |
| aonyx | 0.2.4 |
4.0
|
suspicious | 14 May 2026 | Maintainer History |
| apex-ai | 2.0.0 |
7.0
|
suspicious | 14 May 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionCredential Harvesting+2 |
| agent-convo | 0.1.4 |
5.0
|
suspicious | 14 May 2026 | Git Repository HistoryMaintainer History |
| agentpin | 0.3.0 |
4.0
|
suspicious | 14 May 2026 | Outbound Network CallsCode ObfuscationMaintainer History |
| assaybench | 0.1.0 |
5.0
|
suspicious | 14 May 2026 | Maintainer History |
| artefact-mcp | 0.5.1 |
6.0
|
suspicious | 14 May 2026 | Outbound Network CallsShell / Subprocess ExecutionCredential HarvestingMaintainer History |
| aio.core | 0.11.1 |
5.0
|
suspicious | 14 May 2026 | Code ObfuscationShell / Subprocess ExecutionMaintainer History |
| agent-builder-agentic-mcp-aws-transform | 1.0.1 |
4.0
|
suspicious | 14 May 2026 | Credential HarvestingMaintainer History |
| agent-builder-mcp-aws-transform | 1.0.1 |
6.0
|
suspicious | 14 May 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionCredential Harvesting+1 |
| authsources | 0.4 |
5.0
|
suspicious | 14 May 2026 | Maintainer History |
| authsources-keycloak | 0.3 |
4.0
|
suspicious | 14 May 2026 | Maintainer History |
| apostolu | 0.1.0 |
4.0
|
suspicious | 14 May 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| actiondraw | 0.1.30 |
6.0
|
suspicious | 14 May 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionGit Repository History+1 |
| InSpice | 1.7.0.3 |
4.0
|
suspicious | 14 May 2026 | Outbound Network CallsShell / Subprocess ExecutionSuspicious Page LinksMaintainer History |
| BMLabs-XForge-SDK | 0.1.1 |
4.0
|
suspicious | 14 May 2026 | Maintainer History |
| archspec | 0.2.6 |
5.0
|
suspicious | 14 May 2026 | Code ObfuscationShell / Subprocess ExecutionMaintainer History |
| arguslog | 2.0.2 |
4.0
|
suspicious | 14 May 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| anchorpy3-core | 0.4.0 |
4.0
|
suspicious | 14 May 2026 | Git Repository HistoryMaintainer History |
| aeko-sdk | 0.1.2 |
4.0
|
suspicious | 14 May 2026 | Git Repository HistoryMaintainer History |
| agent-spawn-mcp | 2.0.0 |
5.0
|
suspicious | 14 May 2026 | Outbound Network CallsGit Repository HistoryMaintainer History |
| azurefunctions-extensions-base | 1.2.0 |
4.0
|
suspicious | 14 May 2026 | Shell / Subprocess ExecutionMaintainer History |
| apicol | 0.1.0 |
6.0
|
suspicious | 14 May 2026 | Shell / Subprocess ExecutionGit Repository HistoryMaintainer History |
| Azada-2026 | 0.0.1 |
4.0
|
suspicious | 14 May 2026 | Maintainer History |
| NEMO-user-details | 1.12.0 |
4.0
|
suspicious | 14 May 2026 | Outbound Network CallsMaintainer History |
| aiothermiagenesis | 0.1.0 |
5.0
|
suspicious | 14 May 2026 | Git Repository HistoryMaintainer History |
| agentir-langgraph | 0.1.0 |
5.0
|
suspicious | 14 May 2026 | Maintainer History |
| annslicer | 0.2.1 |
5.0
|
suspicious | 14 May 2026 | Git Repository HistoryMaintainer History |
| anthro | 1.1.1 |
7.0
|
suspicious | 14 May 2026 | Git Repository HistoryMaintainer History |
| android-mcp | 0.2.0 |
4.0
|
suspicious | 14 May 2026 | Shell / Subprocess ExecutionMaintainer History |
| agent-tool-router | 0.4.0 |
5.0
|
suspicious | 14 May 2026 | Code ObfuscationGit Repository HistoryMaintainer History |
| ai-intervention-agent | 1.7.9 |
7.0
|
suspicious | 14 May 2026 | Outbound Network CallsCode ObfuscationShell / Subprocess ExecutionMaintainer History |
| anomaly-infra | 0.2.6 |
4.0
|
suspicious | 14 May 2026 | Maintainer History |
| agentic_security | 1.0.0 |
6.0
|
suspicious | 14 May 2026 | Outbound Network CallsShell / Subprocess ExecutionCredential HarvestingSuspicious Page Links+1 |
| OVAPortableText | 0.4.0 |
4.0
|
suspicious | 14 May 2026 | Shell / Subprocess ExecutionMaintainer History |
| annpracticalcodes | 0.2.0 |
4.0
|
suspicious | 14 May 2026 | Maintainer History |
| alert-infra | 0.1.5 |
5.0
|
suspicious | 14 May 2026 | Outbound Network CallsCode ObfuscationMaintainer History |
| autoplex | 0.3.1 |
5.0
|
suspicious | 14 May 2026 | Shell / Subprocess ExecutionMaintainer History |
| afquery | 0.3.3 |
5.0
|
suspicious | 14 May 2026 | Shell / Subprocess ExecutionMaintainer History |
| apply-pr | 3.4.8 |
4.0
|
suspicious | 14 May 2026 | Outbound Network CallsMaintainer History |