factsage-compound

v0.1.1 safe
4.0
Medium Risk

Tools for reading and working with FactSage compound database files.

🤖 AI Analysis

Final verdict: SAFE

The package shows minimal risk indicators with no network or shell activity and no signs of obfuscation or credential harvesting. However, the recent upload and low activity slightly elevate the metadata risk.

  • No network or shell risks detected
  • Recent upload and low activity noted
Per-check LLM notes
  • Network: No network calls detected, which is normal unless the package requires external services.
  • Shell: No shell execution detected, indicating no direct system command execution.
  • Obfuscation: No obfuscation patterns detected, indicating low risk.
  • Credentials: No credential harvesting patterns detected, indicating low risk.
  • Metadata: The recent upload and low activity suggest potential risk, but there's no concrete evidence of malice.

🔬 Heuristic Checks

Outbound Network Calls

No suspicious network call patterns found

Code Obfuscation

No obfuscation patterns detected

Shell / Subprocess Execution

No shell execution patterns detected

Credential Harvesting

No credential harvesting patterns detected

Typosquatting

No typosquatting candidates detected

Registered Email Domain

Email domain looks legitimate: gmail.com

Suspicious Page Links

All external links appear legitimate

Git Repository History score 2.5

Git history flags: Repository has zero stars and zero forks

  • Repository has zero stars and zero forks
Maintainer History score 4.0

2 maintainer concern(s) found

  • Package uploaded less than 24 hours ago (2026-06-05T01:55:50.000Z)
  • Author "Eugene Nekhoroshev" appears to have only 1 package on PyPI (new or inactive account)