Exact artifact intelligence

Jupyter

ms-toolsai.jupyter@2026.6.2026071001
Security outcomeReview needed

The extension exposes sensitive capabilities or non-confirmed risk evidence that needs context.

100% analysis coverage · exact version only
ms-toolsaivs-marketplaceArtifact e35e1d43645852e1
Security brief

Review decision-relevant behavior before installation.

Review the grouped evidence, affected locations, and whether each behavior matches the extension’s purpose.

58/100Review needed

Diagnostic risk index for this exact artifact — not a probability of malice.

OutcomeReview needed

Policy result for this exact artifact

Coverage
100

Required analyzers completed

Malware signal
0

Diagnostic index, not probability

Evidence groups10

7 contextual groups kept separate

Capabilities10

Power describes access, not intent

Why this outcome

10 behavior groups need context before approval.

Call target resolved via computed member access: CallExpression[...](...) (line 1)

Exact artifacte35e1d43645852e1b343105be910431af4a5331d78ba317d8df553f65de50616

Build 9a51c780c109 · ruleset 2026.07.19

Evidence that drives review
MEDIUM
Call target resolved via computed member access: CallExpression[...](...) (line 1)

24 observed locations · review evidence

MEDIUM
Native binary dist/node_modules/zeromq/prebuilds/linux-arm64/node.napi.glibc.node has no companion checksum or signature file and no documented provenance.

3 observed locations · review evidence

MEDIUM
Extension contains 3 native artifacts (e.g. dist/node_modules/zeromq/prebuilds/linux-arm64/node.napi.glibc.node).

1 observed location · review evidence