pypi

package
v1.7.0 Latest Latest
Warning

This package is not in the latest version of its module.

Go to latest
Published: Jul 19, 2026 License: MIT Imports: 6 Imported by: 0

Documentation

Overview

Package pypi provides a verifier for PyPI API tokens. It uses the PyPI upload endpoint with Basic auth to check token validity. A 405 (Method Not Allowed) response indicates a valid token (authenticated but wrong HTTP method), while 401/403 indicates an invalid token.

Index

Constants

This section is empty.

Variables

This section is empty.

Functions

This section is empty.

Types

type Verifier

type Verifier struct {
	// contains filtered or unexported fields
}

Verifier checks whether a PyPI API token is active by calling the PyPI upload endpoint. It NEVER logs or persists raw token values.

func (*Verifier) Type

func (v *Verifier) Type() string

Type returns the detector ID this verifier handles.

func (*Verifier) Verify

Verify checks if the detected PyPI API token is valid/active. Raw contains the token value. The upload endpoint answers an authenticated GET with 405 (wrong method), which is the positive signal; 401/403 means the token is rejected.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL