So, is there a way to check if any malicious packages installed in my conda environment?
https://github.com/ossillate-inc/packj/blob/main/.packj.yaml
Secondly, what about impersonation where attackers imitate a popular package and its respective metadata?
Packj detects typo-squatting (impersonation) as well.