Exact artifact intelligence

Azure Account

ms-vscode.azure-account@0.13.0
Security outcomeReview needed

The extension exposes sensitive capabilities or non-confirmed risk evidence that needs context.

100% analysis coverage · exact version only
ms-vscodevs-marketplaceArtifact c7fb78223cf1b0e1
Security brief

Review decision-relevant behavior before installation.

Review the grouped evidence, affected locations, and whether each behavior matches the extension’s purpose.

80/100Review needed

Diagnostic risk index for this exact artifact — not a probability of malice.

OutcomeReview needed

Policy result for this exact artifact

Coverage
100

Required analyzers completed

Malware signal
0

Diagnostic index, not probability

Evidence groups3

9 contextual groups kept separate

Capabilities3

Power describes access, not intent

Why this outcome

3 behavior groups need context before approval.

form-data@2.3.3 has 2 OSV finding(s). Version match: exact.

Exact artifactc7fb78223cf1b0e1afd380734835ab43f2e1778276989fe25f0b755d7a709bbe

Build fedc47d31ef5 · ruleset 2026.07.19

Evidence that drives review
HIGH
form-data@2.3.3 has 2 OSV finding(s). Version match: exact.

5 observed locations · review evidence

MEDIUM
Call target resolved via computed member access: Math[...](...) (line 2)

7 observed locations · review evidence

LOW
Manifest activates on a credential-related command: azure-account.login.

1 observed location · review evidence