Policy result for this exact artifact
Exact artifact intelligence
go
golang.go@0.56.0Security outcomeReview needed
The extension exposes sensitive capabilities or non-confirmed risk evidence that needs context.
100% analysis coverage · exact version onlygolangvs-marketplaceArtifact
9f5959fb17ba0a8dReview decision-relevant behavior before installation.
Review the grouped evidence, affected locations, and whether each behavior matches the extension’s purpose.
61/100Review needed
Diagnostic risk index for this exact artifact — not a probability of malice.
100
Required analyzers completed
0
Diagnostic index, not probability
9 contextual groups kept separate
Power describes access, not intent
4 behavior groups need context before approval.
Call target resolved via computed member access: obj[...](...) (line 8392)
9f5959fb17ba0a8dbd804387ddda50975fcaa9dd5267aa33eaaa89912072aacbBuild fedc47d31ef5 · ruleset 2026.07.19
Evidence that drives review
Call target resolved via computed member access: obj[...](...) (line 8392)
43 observed locations · review evidence
Runtime dependency tree-kill is loaded from a mutable or non-registry source: file:third_party/tree-kill.
1 observed location · review evidence
Extension activates on sensitive IDE event: onDebugInitialConfigurations.
3 observed locations · review evidence