Policy result for this exact artifact
Exact artifact intelligence
Azure Account
ms-vscode.azure-account@0.13.0Security outcomeReview needed
The extension exposes sensitive capabilities or non-confirmed risk evidence that needs context.
100% analysis coverage · exact version onlyms-vscodevs-marketplaceArtifact
c7fb78223cf1b0e1Review decision-relevant behavior before installation.
Review the grouped evidence, affected locations, and whether each behavior matches the extension’s purpose.
80/100Review needed
Diagnostic risk index for this exact artifact — not a probability of malice.
100
Required analyzers completed
0
Diagnostic index, not probability
9 contextual groups kept separate
Power describes access, not intent
3 behavior groups need context before approval.
form-data@2.3.3 has 2 OSV finding(s). Version match: exact.
c7fb78223cf1b0e1afd380734835ab43f2e1778276989fe25f0b755d7a709bbeBuild fedc47d31ef5 · ruleset 2026.07.19
Evidence that drives review
form-data@2.3.3 has 2 OSV finding(s). Version match: exact.
5 observed locations · review evidence
Call target resolved via computed member access: Math[...](...) (line 2)
7 observed locations · review evidence
Manifest activates on a credential-related command: azure-account.login.
1 observed location · review evidence