Skip to main content

PatchRadar

Python CI PyPI Docker

PatchRadar 🛡️

Know when your software is vulnerable — before attackers do.

PatchRadar monitors CVE feeds in realtime and alerts you when a new vulnerability affects your software stack. No more manually checking NVD, MSRC, or Snyk — just add your software and let PatchRadar watch for you.

Python CalVer License PyPI CodSpeed


✨ Features

  • 🔍 Realtime CVE monitoring — scans NVD, MSRC and Debian Security Tracker for new vulnerabilities
  • 📋 Personal watchlist — add any software you want to monitor
  • 🎨 Beautiful web UI — dark theme dashboard with charts and filters
  • 💻 CLI first — full command line interface for automation
  • 📊 CVSS scoring — color-coded severity (Critical / High / Medium / Low)
  • 🐧 Debian Security Tracker — monitors open CVEs for Debian/Ubuntu packages
  • 💾 Local SQLite — all data stored locally, no cloud, no account needed
  • 🐍 Python 3.11+ — modern async architecture with httpx and FastAPI

🚀 Installation

pip install patchradar

📖 Usage

CLI

# Add software to your watchlist
patchradar add proxmox
patchradar add bitwarden
patchradar add "windows 10"

# Show your watchlist
patchradar list

# Scan for CVEs (last 30 days)
patchradar scan --days 30

# Show latest CVEs in terminal
patchradar status

# Remove software
patchradar remove proxmox

Web UI

patchradar serve
# Open http://localhost:8000

📡 Sources

Source Type Status
NVD CVE Database ✅ Active
MSRC Microsoft Patch Tuesday ✅ Active
Debian Security Linux packages 🔜 Coming soon
CISA KEV Known Exploited Vulnerabilities 🔜 Coming soon

🗓️ Versioning

PatchRadar uses CalVer — YYYY.MM.PATCH.


⚡ Benchmarks

Performance is tracked continuously with CodSpeed. The benchmarks live in benchmarks/ and cover the CVE collectors, the SQLite layer, the API endpoints and the CLI table rendering.

poetry install --with dev
poetry run pytest benchmarks/            # correctness check, no measurement
codspeed run --mode simulation -- poetry run pytest benchmarks/ --codspeed

🤝 Contributing

Contributions are welcome! Feel free to open issues or pull requests.


📄 License

MIT — see LICENSE for details.


Built with ❤️ by maksimtech

Release files for patchradar 2026.8.33

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for patchradar 2026.8.33
File Size Uploaded
patchradar-2026.8.33.tar.gz 46.8 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for patchradar 2026.8.33
File Interpreter ABI Platform
patchradar-2026.8.33-py3-none-any.whl Python 3 none any Details

Total release size: 66.9 kB

Release files / patchradar-2026.8.33.tar.gz

Download URL patchradar-2026.8.33.tar.gz
Size 46.8 kB
Tags Source
SHA-256 checksum
How to use checksums
e9161a68c0136426355ddf7459935631303ad3a0a5e00aa039dd89f85cceb22a
BLAKE2b-256 checksum
How to use checksums
32b379ab35b452e3de2a7720db1f569ce0e5b49903a3973682bd1c457a90714e
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Aug 25, 2026.

Transparency log

Release files / patchradar-2026.8.33-py3-none-any.whl

Download URL patchradar-2026.8.33-py3-none-any.whl
Size 20.1 kB
Tags Python 3
SHA-256 checksum
How to use checksums
52cb3093481aff8467c6d545f8e1de47d9940ad323ba742c9adfb0033d38564b
BLAKE2b-256 checksum
How to use checksums
3e28be990fd846ff7dc990ef9ae110c820882024cdb3ed08437f7aaeeb871fcb
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/7.0.0 CPython/3.13.14

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Aug 25, 2026.

Transparency log
Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page