Close Open Privacy Scan
App Privacy Score
High risk · 3970 finding(s)
Based on: 2 first-party package(s) · 128/136 deps analyzed
Dependency score: 0 (High risk)
bar_chart Score Breakdown
list Scan Summary
swap_horiz Potential data exfiltration in application code
External domains:
%s0001:002:003:0004::11.2.3.4::ffff:192.168.0.1acme.comaggregate.ee.engr.uky.eduai.google.devai.mongodb.comaiplatform.eu.rep.googleapis.comaiplatform.googleapis.comaiplatform.us.rep.googleapis.comandroid.stackexchange.comanimations.devapi.anthropic.comapi.cohere.comapi.github.comapi.jina.aiapi.nuget.orgapi.openai.comapi.reference.langfuse.comapi.siliconflow.cnapi.upstage.aiapi.voyageai.comarchive.orgarrow.apache.orgarstechnica.comarxiv.orgauth.openai.comaws.amazon.combayes.cs.ucla.edubetterexplained.combitbucket.orgbl.ocks.orgblog.alifaraji.irblog.cryptographyengineering.comblog.famzah.netblog.ganssle.ioblogs.ams.orgblogs.msdn.comblogs.msdn.microsoft.combooks.google.combootlin.combost.ocks.orgboto3.amazonaws.combpa.stbrew.shbrotlipy.readthedocs.iobugreports.qt.iobugs.launchpad.netbugs.python.orgbugs.winehq.orgbugzilla.gnome.orgbun.shcairosvg.orgcarto.comcdn-datasets.huggingface.cocdn.jsdelivr.netcdn.mathjax.orgcdnjs.cloudflare.comcens.ioc.eechevrotain.iochimera.labs.oreilly.comchromium.googlesource.comciteseer.ist.psu.educiteseerx.ist.psu.educlaude.googleapis.comcloud.google.comcloud.langfuse.comcode.activestate.comcole-maclean.github.iocollaboration.cmc.ec.gc.cacommonmark.orgconemu.github.ioconsole.cloud.google.comcookbook.openai.comcourses.cs.ut.eecr.yp.tocran.r-project.orgcran.rstudio.comcrates.iocrypto.cs.mcgill.cacsrc.nist.govcve.mitre.orgd3js.orgdash.voyageai.comdashscope.aliyuncs.comdata-apis.orgdatatracker.ietf.orgdbpubs.stanford.edudemotiles.maplibre.orgdeveloper.android.comdeveloper.apple.comdeveloper.mozilla.orgdevelopers.google.comdevguide.python.orgdigitalassets.lib.berkeley.edudiscuss.python.orgdl.acm.orgdl.google.comdmlc.github.iodoc.rust-lang.orgdocbook.sourceforge.netdochub.mongodb.orgdocs.aiohttp.orgdocs.anthropic.comdocs.atlas.mongodb.comdocs.aws.amazon.comdocs.bodo.aidocs.cloud.google.comdocs.h5py.orgdocs.microsoft.comdocs.npmjs.comdocs.parallel.aidocs.pydantic.devdocs.pytest.orgdocs.python.orgdocs.pytorch.orgdocs.rsdocs.scipy.orgdocs.sqlalchemy.orgdocs.voyageai.comdoi.acm.orgdoi.orgdx.doi.orgeccc.hpi-web.deeclectic.ss.uci.edueli.thegreenplace.neten.wikipedia.orgen.wikiversity.orgeprint.iacr.orgepubs.siam.orgerrors.pydantic.devewbi.blogs.comexam_ple.comexample-resource.azure.openai.comexample-resource.services.ai.azure.comexcalidraw.comexslt.orgfakerjs.devfastapi.tiangolo.comflak.tedunangst.comfonts.googleapis.comfoo.comfoss.heptapod.netfreedesktop.orgfridrich.blogspot.nlgcc.gnu.orggenerativelanguage.googleapis.comgeoip.maps.opensearch.orggephi.orggexf.netgit.kernel.orggithub.comgitlab.comgitlab.freedesktop.orggo.devgoo.glgoogle.aip.devgoogle.comgoogle.github.iographics.stanford.edugraphml.graphdrawing.orggroups.google.comhal.archives-ouvertes.frhaproxy.1wt.euhdl.handle.nethelp.openai.comhf.cohg.python.orghomepages.dcc.ufmg.brhost.comhrcak.srce.hrhtml.spec.whatwg.orghttpbin.orghttpd.apache.orghuggingface.cohypothesis.readthedocs.ioicons.getbootstrap.comieeexplore.ieee.orgimageio.readthedocs.iointegrate.api.nvidia.comiopscience.iop.orgipython.orgipython.readthedocs.ioiuuk.mff.cuni.czj3-fortran.orgjmlr.csail.mit.edujournals.aps.orgjournals.plos.orgjponnela.comjson-schema.orgjsonlines.orglangfuse.comlanguage.googleapis.comlearn.microsoft.comlegacy.reactjs.orglibsdl.orglink.aps.orglink.springer.comlinuxdevcenter.comlists.sourceforge.netlocalhost.tiangolo.commagicstack.github.iomail.python.orgmanagement.azure.commanual.cytoscape.orgmath.berkeley.edumath.mit.edumath.stackexchange.commath.wvu.edumathworld.wolfram.commatomo.ouestware.commatplotlib.orgmedialab.sciencespo.frmembers.loria.frmerlinux.eumesonbuild.commetacpan.orgmicrosoft.github.iomineru.netmodel-spec.openai.commodelcontextprotocol.iomongodb.commsdn.microsoft.commy-server.commypy.readthedocs.iomüller.denats.ioneo4j.comnetworkx.lanl.govnetworkx.orgnicolas.limare.netnodatime.orgns.adobe.comnumba.readthedocs.ionumexpr.readthedocs.ionumpy.orgnumpydoc.readthedocs.ionvlpubs.nist.govoeis.orgoffice.microsoft.comofficeopenxml.comollama.comonlinelibrary.wiley.comonnxruntime.aiopen.bigmodel.cnopenai.comopenaipublic.blob.core.windows.netopenid.netopenproceedings.orgopenpyxl.readthedocs.ioopensearch.orgopensource.adobe.comopentelemetry.iooss.redis.comother.comouestware.compackages.msys2.orgpackaging.python.orgpandas.pydata.orgparquet.apache.orgpeople.csail.mit.edupeople.eecs.berkeley.edupeps.python.orgpersonal.math.ubc.capillow.readthedocs.iopip.pypa.ioplatform.claude.complatform.openai.compluggy.readthedocs.iopoint-at-infinity.orgportal.acm.orgportswigger.netpre-commit.compresbrey.mit.edupub.ist.ac.atpublic-sans.digital.govpurl.orgpy.readthedocs.iopybites.blogspot.bepydantic-docs.helpmanual.iopygraphviz.github.iopyinstaller.readthedocs.iopyjwt.readthedocs.iopypdf.readthedocs.iopyperclip.readthedocs.iopypi.orgpypi.python.orgpypinyin.readthedocs.iopython-devtools.helpmanual.iopython.langchain.compython.orgpythonhosted.orgpythontesting.netpyyaml.orgraw.githubusercontent.comreact.devreact.i18next.comreactjs.orgredis.comredis.ioredis.readthedocs.ioredisearch.iorefspecs.linuxfoundation.orgrich.readthedocs.iorosettacode.orgrussellfunk.orgs3.amazonaws.comsariyuce.comschemas.microsoft.comschemas.openxmlformatsschemas.openxmlformats.orgscikit-image.orgscipy-cookbook.readthedocs.ioscipy-lectures.orgscipy.orgserverfault.comsethmlarson.devsetuptools.pypa.iosh.rustup.rssites.cs.ucsb.edusonner.emilkowal.skisourceforge.netsourceware.orgspdx.devspeakeasy.comspec.openapis.orgspecifications.freedesktop.orgspecs.frictionlessdata.iostackoverflow.comstarlette.devstartbigthinksmall.wordpress.comstorage.googleapis.comstudycli.orgsupport.sas.comswagger.iotechnet.microsoft.comtest.pypi.orgthemeui.nettikz.devtimeapi.iotools.ietf.orgtowardsdatascience.comtox.wikitruststore.readthedocs.iotwitter.comtyper.tiangolo.comtyping-extensions.readthedocs.iotyping.python.orgunpkg.comupload.wikimedia.orgurllib3.readthedocs.iousers.cecs.anu.edu.auvalidate-pyproject.readthedocs.iovideolectures.netviews.scientific-python.orgvirtualenv.pypa.iovis.socialvisualstudio.microsoft.comvlado.fmf.uni-lj.sivowpalwabbit.orgw.wikiw3.orgweb.archive.orgweb.cs.ucdavis.eduweb.eecs.utk.eduweb.math.princeton.eduweb.mit.eduwebsockets.readthedocs.iowiki.centos.orgwin.rustup.rswixtoolset.orgwrapdb.mesonbuild.comwuecampus2.uni-wuerzburg.dewww-cs-faculty.stanford.eduwww-cs-students.stanford.eduwww-personal.umich.eduwww.aiim.orgwww.algorithmic-solutions.infowww.ams.orgwww.analytictech.comwww.anthropic.comwww.apache.orgwww.combinatorics.orgwww.coolmath.comwww.cs.cornell.eduwww.cs.purdue.eduwww.cs.technion.ac.ilwww.cs.ucdavis.eduwww.cs.umd.eduwww.cs.uu.nlwww.cse.msu.eduwww.ecma-international.orgwww.example.珠宝www.faqs.orgwww.fim.uni-passau.dewww.freedesktop.orgwww.gevent.orgwww.gexf.netwww.github.comwww.google.comwww.googleapis.comwww.graphdegeneracy.orgwww.graphviz.orgwww.haproxy.orgwww.hwjyw.comwww.iana.orgwww.ics.uci.eduwww.ietf.orgwww.informatik.uni-augsburg.dewww.intel.comwww.jmlr.orgwww.json.orgwww.jstor.orgwww.math.hmc.eduwww.math.uchicago.eduwww.math.ucsd.eduwww.mathjax.orgwww.mathworks.comwww.mdpi.comwww.microsoft.comwww.moe.edu.cnwww.mongodb.comwww.numberanalytics.comwww.oasis-open.orgwww.openblas.netwww.openssh.comwww.openssl.orgwww.openstreetmap.orgwww.opm.govwww.owasp.orgwww.pcre.orgwww.pinyin.infowww.pnas.orgwww.postgresql.orgwww.pycryptodome.orgwww.python.orgwww.researchgate.netwww.rfc-editor.orgwww.santafe.eduwww.santofortunato.netwww.scielo.brwww.sciencedirect.comwww.scipy.orgwww.secg.orgwww.sigmajs.orgwww.stata.comwww.stats.ox.ac.ukwww.statsmodels.orgwww.stixfonts.orgwww.sympy.orgwww.systutorials.comwww.tarsnap.comwww.usenix.orgwww.w3.orgwww.w3schools.comwww.win.tue.nlwww.xudongz.comwww.xyz.eduwww.youtube.comwww.yworks.comwww.zhihu.comwww2.asanet.orgxarray.pydata.orgxlrd.readthedocs.ioxn--fiqs8s.icom.museumyahoo.comyarnpkg.comyour-resource.openai.azure.comyourhost.comyoutu.bezh.wiktionary.org
- 1source
pkgs/python/[email protected]/lightrag/tools/download_cache.py:40 - 2sink
pkgs/python/[email protected]/lightrag/tools/download_cache.py:43
- 1source
pkgs/python/[email protected]/lightrag/tools/download_cache.py:40 - 2sink
pkgs/python/[email protected]/lightrag/tools/download_cache.py:105
- 1source
pkgs/python/[email protected]/lightrag/tools/download_cache.py:40 - 2sink
pkgs/python/[email protected]/lightrag/tools/download_cache.py:108
- 1source
pkgs/python/[email protected]/lightrag/tools/download_cache.py:40 - 2sink
pkgs/python/[email protected]/lightrag/tools/download_cache.py:116
- 1source
repo/lightrag/evaluation/eval_rag_quality.py:320 - 2sink
repo/lightrag/evaluation/eval_rag_quality.py:340
- 1source
repo/lightrag/evaluation/eval_rag_quality.py:320 - 2sink
repo/lightrag/evaluation/eval_rag_quality.py:343
- 1source
repo/lightrag/llm/jina.py:128 - 2sink
repo/lightrag/llm/jina.py:177
- 1source
repo/lightrag/llm/voyageai.py:98 - 2sink
repo/lightrag/llm/voyageai.py:147
- 1source
repo/lightrag/tools/download_cache.py:132 - 2sink
repo/lightrag/tools/download_cache.py:135
- 1source
repo/lightrag/tools/download_cache.py:132 - 2sink
repo/lightrag/tools/download_cache.py:197
- 1source
repo/lightrag/tools/download_cache.py:132 - 2sink
repo/lightrag/tools/download_cache.py:200
- 1source
repo/lightrag/tools/download_cache.py:132 - 2sink
repo/lightrag/tools/download_cache.py:208
hub Dependency data flows (4)
- 1source
pkgs/python/[email protected]/lightrag/evaluation/eval_rag_quality.py:320 - 2sink
pkgs/python/[email protected]/lightrag/evaluation/eval_rag_quality.py:340
- 1source
pkgs/python/[email protected]/lightrag/evaluation/eval_rag_quality.py:320 - 2sink
pkgs/python/[email protected]/lightrag/evaluation/eval_rag_quality.py:343
- 1source
pkgs/python/[email protected]/lightrag/llm/jina.py:128 - 2sink
pkgs/python/[email protected]/lightrag/llm/jina.py:177
- 1source
pkgs/python/[email protected]/lightrag/llm/voyageai.py:98 - 2sink
pkgs/python/[email protected]/lightrag/llm/voyageai.py:147
</> First-Party Code
first-party (python)
python first-party logger.debug("🔍 References Count: %s", len(references))
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
logger.debug("🔍 First Reference Keys: %s", list(first_ref.keys()))
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
logger.debug(f"Jina embeddings generated: shape {embeddings.shape}")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
logger.debug(f"VoyageAI embeddings generated: shape {embeddings.shape}")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
print(f"Using TIKTOKEN_CACHE_DIR from environment: {cache_dir}")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
print(f"\nCache location: {cache_dir}")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
print(f" tar -czf tiktoken_cache.tar.gz {cache_dir}")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
print(f" cp -r {cache_dir} ~/.tiktoken_cache/")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
expand_more 629 low-confidence finding(s)
low env_fs — Filesystem access. 90 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 26 locations
low env_fs — Environment-variable access. 512 locations
print(f" {index}. Score: {score:.4f} | {content}...")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
</> Dependencies
langfuse
python dependencyfrom opentelemetry import context as otel_context_api
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry import trace as otel_trace_api
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace import ReadableSpan, TracerProvider
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace.export import SpanExporter
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace.id_generator import IdGenerator, RandomIdGenerator
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.util._decorator import (
_AgnosticContextManager,
_agnosticcontextmanager,
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.util._decorator import _AgnosticContextManager
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry import (
baggage,
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry import (
baggage as otel_baggage_api,
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry import (
context as otel_context_api,
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry import (
trace as otel_trace_api,
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.context import _RUNTIME_CONTEXT
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.util._decorator import (
_AgnosticContextManager,
_agnosticcontextmanager,
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry import trace as otel_trace_api
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.resources import Resource
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace import ReadableSpan, TracerProvider
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace.export import SpanExporter
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace.id_generator import IdGenerator
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace.sampling import Decision, TraceIdRatioBased
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.trace import Tracer
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry import trace as otel_trace_api
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.trace.status import Status, StatusCode
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.util._decorator import _AgnosticContextManager
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.attributes import BoundedAttributes
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace import ReadableSpan
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace.export import SpanExporter, SpanExportResult
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.util import BoundedList
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.trace import format_span_id, format_trace_id
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.util.types import AttributeValue
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace import ReadableSpan
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry import context as context_api
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.context import Context
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.exporter.otlp.proto.http.trace_exporter import OTLPSpanExporter
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace import ReadableSpan, Span
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace.export import BatchSpanProcessor, SpanExporter
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.trace import format_span_id, format_trace_id
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry import trace as otel_trace_api
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk import util
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.trace import ReadableSpan
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry import context, trace
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.util._decorator import _AgnosticContextManager
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.util.types import AttributeValue
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
expand_more 62 low-confidence finding(s)
low env_fs — Environment-variable access. 31 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 30 locations
with open(file_path, "rb") as file:
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
lightrag-hku
python dependency logger.debug("🔍 References Count: %s", len(references))
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
logger.debug("🔍 First Reference Keys: %s", list(first_ref.keys()))
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
logger.debug(f"Jina embeddings generated: shape {embeddings.shape}")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
logger.debug(f"VoyageAI embeddings generated: shape {embeddings.shape}")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
print(f"Using TIKTOKEN_CACHE_DIR from environment: {cache_dir}")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
print(f"\nCache location: {cache_dir}")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
print(f" tar -czf tiktoken_cache.tar.gz {cache_dir}")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
print(f" cp -r {cache_dir} ~/.tiktoken_cache/")
PII-bearing data is written to a log/print sink — it stays in-process and does not leave the application, but logged PII is still a privacy concern.
Fix: Avoid logging user identifiers; redact or omit PII from log/print statements.
expand_more 465 low-confidence finding(s)
low env_fs — Environment-variable access. 398 locations
low env_fs — Filesystem access. 44 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 23 locations
redis
python dependency from opentelemetry.metrics import Observation
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.metrics import Meter
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.sdk.metrics import MeterProvider
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry import metrics
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.metrics import NoOpMeterProvider
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.metrics import Observation
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.metrics import Observation
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
from opentelemetry.metrics import Observation
A telemetry/analytics SDK is used; event data is sent to a third-party collector.
Fix: Ensure user consent and a lawful basis; strip PII from event payloads.
expand_more 6 low-confidence finding(s)
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 4 locations
low env_fs — Filesystem access. 2 locations
PyJWT
python dependencyexpand_more 5 low-confidence finding(s)
with open(os.path.join(here, *parts), encoding="utf-8") as f:
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
low env_fs — Environment-variable access. 3 locations
with urllib.request.urlopen(
r, timeout=self.timeout, context=self.ssl_context
) as response:
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
PyYAML
python dependencyexpand_more 3 low-confidence finding(s)
low env_fs — Environment-variable access. 3 locations
aioboto3
python dependencyexpand_more 6 low-confidence finding(s)
resp = requests.get('https://pypi.org/pypi/aiobotocore/json').json()
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
g = Github(os.environ['GITHUB_TOKEN'])
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
aiohttp
python dependencyexpand_more 30 low-confidence finding(s)
low env_fs — Filesystem access. 10 locations
low env_fs — Environment-variable access. 9 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 5 locations
low egress — Hardcoded external endpoint. Review what data is sent to this destination. 6 locations
anthropic
python dependencyexpand_more 123 low-confidence finding(s)
low env_fs — Environment-variable access. 74 locations
low pii_flow — PII-bearing data is written to a log/print sink. Logged PII is a privacy concern even when it does not leave the process. Non-production path — not application runtime. 19 locations
low env_fs — Filesystem access. 27 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 3 locations
ascii_colors
python dependencyexpand_more 1 low-confidence finding(s)
self._stream = open(self.filename, self.mode, encoding=self.encoding)
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
asyncpg
python dependencyexpand_more 52 low-confidence finding(s)
low env_fs — Environment-variable access. 42 locations
low env_fs — Filesystem access. 10 locations
cairosvg
python dependencyexpand_more 4 low-confidence finding(s)
low env_fs — Filesystem access. 3 locations
return urlopen(Request(url, headers=HTTP_HEADERS)).read()
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
configparser
python dependencyexpand_more 1 low-confidence finding(s)
with open(filename, encoding=encoding) as fp:
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
cryptography
python dependencyexpand_more 22 low-confidence finding(s)
low env_fs — Filesystem access. 18 locations
low env_fs — Environment-variable access. 4 locations
datasets
python dependencyexpand_more 77 low-confidence finding(s)
low env_fs — Filesystem access. 52 locations
low env_fs — Environment-variable access. 25 locations
defusedxml
python dependencyexpand_more 8 low-confidence finding(s)
low env_fs — Filesystem access. 5 locations
low env_fs — Environment-variable access. 3 locations
distro
python dependencyexpand_more 5 low-confidence finding(s)
low env_fs — Environment-variable access. 2 locations
low env_fs — Filesystem access. 3 locations
fastapi
python dependencyexpand_more 70 low-confidence finding(s)
low env_fs — Filesystem access. 55 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 12 locations
os.environ["DYLD_FALLBACK_LIBRARY_PATH"] = "/opt/homebrew/lib"
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
low egress — Hardcoded external endpoint. Review what data is sent to this destination. 2 locations
google-api-core
python dependencyexpand_more 3 low-confidence finding(s)
low env_fs — Environment-variable access. 3 locations
google-genai
python dependencyexpand_more 87 low-confidence finding(s)
low env_fs — Environment-variable access. 28 locations
low env_fs — Filesystem access. 9 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 50 locations
gunicorn
python dependencyexpand_more 104 low-confidence finding(s)
low env_fs — Environment-variable access. 62 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 30 locations
requests.get('http://requestb.in/15s95oz1')
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
low env_fs — Filesystem access. 11 locations
httpx
python dependencyexpand_more 4 low-confidence finding(s)
low env_fs — Environment-variable access. 4 locations
httpx2
python dependencyexpand_more 4 low-confidence finding(s)
low env_fs — Environment-variable access. 4 locations
jiter
python dependencyexpand_more 2 low-confidence finding(s)
low env_fs — Filesystem access. 2 locations
katex
python dependencyexpand_more 1 low-confidence finding(s)
with open(file_name, 'rb') as f:
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
langchain-experimental
python dependencyexpand_more 8 low-confidence finding(s)
low env_fs — Filesystem access. 7 locations
result = requests.post(url, data=payload)
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
langchain-text-splitters
python dependencyexpand_more 2 low-confidence finding(s)
response = client.get(url, timeout=timeout)
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
html_content = pathlib.Path(file).read_text(encoding="utf-8")
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
llama-index-llms-openai
python dependencyexpand_more 1 low-confidence finding(s)
openai_api_key = api_key or os.environ.get("OPENAI_API_KEY", "")
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
nano-vectordb
python dependencyexpand_more 5 low-confidence finding(s)
neo4j
python dependencyexpand_more 1 low-confidence finding(s)
ENABLED = sys.flags.dev_mode or bool(os.getenv("PYTHONNEO4JDEBUG"))
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
networkx
python dependencyexpand_more 16 low-confidence finding(s)
low env_fs — Environment-variable access. 12 locations
low env_fs — Filesystem access. 3 locations
sock = urllib.request.urlopen(url) # open URL
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
numpy
python dependencyexpand_more 982 low-confidence finding(s)
low env_fs — Filesystem access. 618 locations
pkgs/python/[email protected]/vendored-meson/meson/mesonbuild/interpreterbase/interpreterbase.py:106
pkgs/python/[email protected]/vendored-meson/meson/mesonbuild/interpreterbase/interpreterbase.py:155
pkgs/python/[email protected]/vendored-meson/meson/mesonbuild/interpreterbase/interpreterbase.py:676
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/105 generatorcustom/catter.py:8
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/129 build by default/mygen.py:5
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/129 build by default/mygen.py:6
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/228 custom_target source/x.py:2
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/228 custom_target source/x.py:4
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/262 generator chain/stage1.py:5
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/262 generator chain/stage1.py:6
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/262 generator chain/stage2.py:5
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/262 generator chain/stage2.py:6
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/71 ctarget dependency/gen1.py:9
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/71 ctarget dependency/gen2.py:9
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/95 manygen/subdir/manygen.py:10
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/95 manygen/subdir/manygen.py:43
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/95 manygen/subdir/manygen.py:50
pkgs/python/[email protected]/vendored-meson/meson/test cases/common/95 manygen/subdir/manygen.py:57
low env_fs — Environment-variable access. 356 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 5 locations
low egress — Hardcoded external endpoint. Review what data is sent to this destination. 3 locations
ollama
python dependencyexpand_more 12 low-confidence finding(s)
low env_fs — Filesystem access. 5 locations
latest = httpx.get('https://xkcd.com/info.0.json')
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 4 locations
low env_fs — Environment-variable access. 2 locations
openai
python dependencyexpand_more 69 low-confidence finding(s)
low env_fs — Filesystem access. 16 locations
low env_fs — Environment-variable access. 47 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 2 locations
low egress — Hardcoded external endpoint. Review what data is sent to this destination. 4 locations
openpyxl
python dependencyexpand_more 4 low-confidence finding(s)
low env_fs — Filesystem access. 2 locations
low env_fs — Environment-variable access. 2 locations
opensearch-py
python dependencyexpand_more 14 low-confidence finding(s)
low env_fs — Environment-variable access. 9 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 3 locations
low env_fs — Filesystem access. 2 locations
packaging
python dependencyexpand_more 3 low-confidence finding(s)
low env_fs — Filesystem access. 3 locations
pandas
python dependencyexpand_more 29 low-confidence finding(s)
low env_fs — Filesystem access. 12 locations
low env_fs — Environment-variable access. 16 locations
return urllib.request.urlopen(*args, **kwargs) # noqa: TID251
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
pipmaster
python dependencyexpand_more 4 low-confidence finding(s)
low env_fs — Filesystem access. 2 locations
clean_env = os.environ.copy()
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
with urllib.request.urlopen(req) as response:
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
pre-commit
python dependencyexpand_more 58 low-confidence finding(s)
low env_fs — Environment-variable access. 25 locations
low env_fs — Filesystem access. 31 locations
resp = urllib.request.urlopen('https://go.dev/dl/?mode=json')
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
resp = urllib.request.urlopen(_get_url(version))
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
psutil
python dependencyexpand_more 28 low-confidence finding(s)
low env_fs — Filesystem access. 19 locations
low env_fs — Environment-variable access. 7 locations
res = requests.get(url, timeout=REQUEST_TIMEOUT)
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
req = urlopen(URL, **kwargs)
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
pycryptodome
python dependencyexpand_more 31 low-confidence finding(s)
low env_fs — Filesystem access. 26 locations
low env_fs — Environment-variable access. 5 locations
pydantic
python dependencyexpand_more 9 low-confidence finding(s)
low env_fs — Filesystem access. 5 locations
pymongo
python dependencyexpand_more 117 low-confidence finding(s)
low env_fs — Filesystem access. 20 locations
low env_fs — Environment-variable access. 92 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 5 locations
pypdf
python dependencyexpand_more 9 low-confidence finding(s)
low env_fs — Filesystem access. 7 locations
environment = os.environ.copy()
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
with urllib.request.urlopen(
f"https://{FONT_LOC}"
) as connection, ZipFile(BytesIO(
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
pypinyin
python dependencyexpand_more 6 low-confidence finding(s)
low env_fs — Environment-variable access. 2 locations
pytest
python dependencyexpand_more 437 low-confidence finding(s)
low env_fs — Environment-variable access. 76 locations
low env_fs — Filesystem access. 356 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 3 locations
low egress — Hardcoded external endpoint. Review what data is sent to this destination. 2 locations
python-docx
python dependencyexpand_more 7 low-confidence finding(s)
low env_fs — Filesystem access. 7 locations
python-dotenv
python dependencyexpand_more 11 low-confidence finding(s)
low env_fs — Filesystem access. 3 locations
low env_fs — Environment-variable access. 8 locations
python-multipart
python dependencyexpand_more 1 low-confidence finding(s)
tmp_file = open(path, "w+b")
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
python-pptx
python dependencyexpand_more 13 low-confidence finding(s)
low env_fs — Filesystem access. 12 locations
home = os.environ.get("HOME")
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
pytz
python dependencyexpand_more 6 low-confidence finding(s)
low env_fs — Environment-variable access. 2 locations
low env_fs — Filesystem access. 4 locations
qdrant-client
python dependencyexpand_more 13 low-confidence finding(s)
response = httpx.get(rest_uri, headers=rest_headers, auth=auth_provider, timeout=timeout)
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
low env_fs — Filesystem access. 12 locations
ruff
python dependencyexpand_more 10 low-confidence finding(s)
low env_fs — Filesystem access. 10 locations
setuptools
python dependencyexpand_more 163 low-confidence finding(s)
low env_fs — Environment-variable access. 79 locations
low env_fs — Filesystem access. 82 locations
req = urllib.request.urlopen(url)
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
with urlopen(url, context=context) as response: # noqa: S310 (audit URLs)
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
starlette
python dependencyexpand_more 2 low-confidence finding(s)
def __init__(self, environ: MutableMapping[str, str] = os.environ):
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
with open(file_name, encoding=encoding) as input_file:
Reads environment variables or the filesystem — an inventory-level capability, not a leak on its own.
Fix: Usually benign; confirm any secret read here is not later sent externally.
tiktoken
python dependencyexpand_more 16 low-confidence finding(s)
low env_fs — Environment-variable access. 5 locations
low env_fs — Filesystem access. 8 locations
low egress — Outbound request to a variable or assembled URL on a network client. Review what data is sent to this destination. 3 locations
uvicorn
python dependencyexpand_more 5 low-confidence finding(s)
low env_fs — Environment-variable access. 3 locations
low env_fs — Filesystem access. 2 locations
voyageai
python dependencyexpand_more 10 low-confidence finding(s)
low env_fs — Filesystem access. 6 locations
result = _thread_context.session.request(
method,
abs_url,
headers=headers,
data=data,
files=files,
stream=stream,
timeout=request_timeout if request_timeout else TIMEOUT_SECS,
proxies=_thread_context.session.proxies,
)
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
low env_fs — Environment-variable access. 3 locations
xlsxwriter
python dependencyexpand_more 18 low-confidence finding(s)
low env_fs — Filesystem access. 17 locations
image_data = BytesIO(urlopen(url).read())
Data is sent to a hardcoded external endpoint; review what leaves the process.
Fix: Verify the destination and that only non-sensitive data is sent; pin and audit the dependency.
zhipuai
python dependencyexpand_more 10 low-confidence finding(s)
low env_fs — Environment-variable access. 3 locations
low env_fs — Filesystem access. 7 locations
Skipped dependencies
Production
- @sigma/edge-curve prod — dist-only: no readable source
- @sigma/node-border prod — dist-only: no readable source
- react-select prod — dist-only: no readable source
- spacy prod — no sdist (wheels only)
- faiss-cpu prod — no sdist (wheels only)
- pymilvus prod — no sdist (wheels only)
- llama-index prod — no python source in sdist
- ragas prod — sdist exceeds byte cap