M280W1PRODSonarQube for IDE
Publisher Evidence
Limited evidencePRODM280DVTWEEK1
Publisher identity, store signals, distribution reach, and warning signals used for context. Treat this as supporting evidence, not a clean bill of health.
10 evidence rows available.
Analyzing extension security...
Security Analysis Summary
Security Analysis Overview
M280W1PRODSonarQube for IDE is a Visual Studio Code Marketplace extension published by PRODM280DVTWEEK1. Version 5.6.0 has been analyzed by the Risky Plugins security platform, receiving a risk score of 0/100 (MINIMAL risk) based on 0 security findings.
Risk Assessment
This extension presents minimal security concerns. The automated analysis found very few or no issues, suggesting it is suitable for general use.
What Was Analyzed
The security assessment covers multiple analysis categories:
- Malware Detection: YARA rule matching against 2,400+ malware signatures
- Secret Detection: Scanning for exposed API keys, tokens, and credentials
- Static Analysis: Code-level security analysis for common vulnerability patterns
- Network Analysis: Detection of suspicious network communications and endpoints
- Obfuscation Detection: Identification of code obfuscation techniques
Developer Information
M280W1PRODSonarQube for IDE is published by PRODM280DVTWEEK1 on the Visual Studio Code Marketplace marketplace.
Recommendation
Based on the automated security analysis, this extension appears safe for general use. As with any extension, users should review the requested permissions before installation.
Source Code Not Available
Source code is not available for this version of the extension.
About This Extension
Frequently Asked Questions
Similar Extensions
Related extensions from the same publisher or marketplace