bandit

PyPI v1.9.4

4,677,064 weekly downloads · Apache-2.0 · 4 Dependencies

Recently published

Source data as of:

Summary

Security oriented static analyser for python code.

Install pip install bandit

Registry values

Reproduced verbatim from the official registry, with the source named on each value.

Weekly downloads 4,677,064 Source: PyPI (Python Package Index)
Releases 50 Last release: 2026-02-25 Source: PyPI (Python Package Index)
Dependencies 4 Source: PyPI (Python Package Index)

Description

Security oriented static analyser for python code.

Registry-supplied description, cleaned to plain text. Source: PyPI (Python Package Index).

Package details

Package
bandit
Registry
PyPI
Version
1.9.4
Weekly downloads
4,677,064 (weekly)
License
Apache-2.0
Dependencies
4: PyYAML, stevedore, rich, colorama
Releases
50
Last release
2026-02-25
First published
2015-03-23
Homepage
https://bandit.readthedocs.io/
Repository
https://github.com/PyCQA/bandit

Why a field shows "—": A dash means the value is not published by the source registry for that package. Quanteta never fills in a guessed value — a missing field stays blank.

Derived indices (computation method published)

Quanteta-computed from the registry values below. This is a derived index, not a measured registry metric. See the formula on the Data & Sources page.

Q-Vitality Quanteta 34.6 / 100 Maintenance activity index (release cadence + download level).
Q-Trust Quanteta 18.5 / 100 Adoption / stability index (community size + download stability + age).
Q-Risk Quanteta 55.5 / 100 Dependency-surface index. Higher = more risk factors detected.

Data & Sources