Python
Score-based assessment (low risk, 31/100). Last analyst review covers version 2026.5.2026051501.
No individual score drivers were recorded for this analysis.
Analysis record
- Analysed
- 4 days ago
- Version
- v2026.7.2026092501
- Artifact
- SHA256 FE3…A29
- Source
- Findings (non-IoC)
Evidence ledger
Ranked by severity · findings with a source location link to the code viewer
Publisher Evidence
HighMicrosoft
Publisher identity, store signals, distribution reach, and warning signals used for context. Treat this as supporting evidence, not a clean bill of health.
11 evidence rows available.
Finding Categories
AI Security Report
AI Security Review
Evidence context: threat category none; evidence quality strong.
The Python extension for VS Code provides language support with various features such as IntelliSense, debugging, linting, formatting, and more. The extension's dependencies include iconv-lite, jsonc-parser, semver, arch, vscode-tas-client, sudo-prompt, stack-trace, winreg, @vscode/extension-telemetry, which, vscode-languageclient, and vscode-languageserver-protocol. These dependencies are typical for a language support extension and are used for tasks such as parsing, formatting, and communicating with the language server. The extension does not have any findings related to malware signatures, IOCs, or obfuscation. The @vscode/extension-telemetry dependency is used for sending telemetry data to the VS Code team, which is a standard practice for many extensions. The sudo-prompt dependency is used for prompting the user for sudo access when necessary, which is a legitimate use case for some features of the extension. Overall, the extension's dependencies and features are consistent with its stated purpose and do not indicate any malicious behavior. The strongest counterargument to this verdict would be that some of the dependencies could potentially be used for malicious purposes, but there is no evidence to suggest that this is the case. The extension is from a verified publisher on the VS Code marketplace, which adds to its credibility. In conclusion, the findings in the evidence bundle do not suggest any malicious behavior, and the extension's dependencies and features are consistent with its stated purpose.
Key Reasons
- The extension's dependencies are typical for a language support extension.
- There are no findings related to malware signatures, IOCs, or obfuscation.
- The extension is from a verified publisher on the VS Code marketplace.
Reviewed 2026-05-23; recommended action: no action; model confidence 90%.
VS Code version history
Risk trend by version
12 analyzed versions. Each point is the latest successful scan for that version; failed zero-score scans are hidden. Dates are based on first seen by risky plugins.
Pick any point on the chart to explore that version's code below.
Source Code Not Available
Source code is not available for this version of the extension.
About This Extension
Frequently Asked Questions
Similar Extensions
Related extensions from the same publisher or marketplace