Is "AI Hub Sync" on VS Code Marketplace Safe to Install?

foreveryu · vscode · v1.3.3

团队 AI 开发资源集中管理 — 从共享 Git 仓库一键同步 Skills、Rules、MCP 配置到工作空间,支持选择性同步与分支管理

Risk Assessment

Pending
0
out of 100
MINIMAL

0 security findings detected across all analyzers

VS Code extension analyzed via package manifest and static code analysis

No Threats Detected

This extension passed all security checks

About This Extension

团队 AI 开发资源集中管理 — 从共享 Git 仓库一键同步 Skills、Rules、MCP 配置到工作空间,支持选择性同步与分支管理

No Findings

All security checks passed

Security Analysis Summary

Security Analysis Overview

AI Hub Sync is a Visual Studio Code Marketplace extension published by foreveryu. Version 1.3.3 has been analyzed by the Risky Plugins security platform, receiving a risk score of 0/100 (MINIMAL risk) based on 0 security findings.

Risk Assessment

This extension presents minimal security concerns. The automated analysis found very few or no issues, suggesting it is suitable for general use.

What Was Analyzed

The security assessment covers multiple analysis categories:

  • Malware Detection: YARA rule matching against 2,400+ malware signatures
  • Secret Detection: Scanning for exposed API keys, tokens, and credentials
  • Static Analysis: Code-level security analysis for common vulnerability patterns
  • Network Analysis: Detection of suspicious network communications and endpoints
  • Obfuscation Detection: Identification of code obfuscation techniques

Developer Information

AI Hub Sync is published by foreveryu on the Visual Studio Code Marketplace marketplace. The extension has approximately 31 users.

Recommendation

Based on the automated security analysis, this extension appears safe for general use. As with any extension, users should review the requested permissions before installation.

Frequently Asked Questions