VS Code Marketplace Verified

Workbench Notebooks

by Google Cloud · 3.8K users · 5.0 rating
de61ac6e-4ca0-507d-8d95-69d360e13ba8 | v0.2.0
62/ 100
MEDIUM risk
+16 since v0.1.1
Analyst verdict
Benign but powerful

From the RiskyPlugins AI security review of the observed evidence.

Analysis record

Analysed
3 weeks ago
Version
v0.2.0
Artifact
SHA256 EE4…303
Source
Findings (non-IoC)

Evidence ledger

Ranked by severity · findings with a source location link to the code viewer

35 detail rows

YARA Rule Matches

17 rules
SeverityRuleHitsFilesMetadata
LOWRedirectToUnknownPath 1
out/extension.js
-
LOWcredential env files 1
out/extension.js
-
LOWpostinstall persistence mechanism 1
out/extension.js
-
LOWpostinstall file download 2
out/extension.jspackage.json
-
LOWcredential gcp credentials 1
out/extension.js
-
LOWNoUseWeakRandom 1
out/extension.js
-
LOWpostinstall crypto operations 1
out/extension.js
-
LOWpostinstall file manipulation 1
out/extension.js
-
LOWNoUseSocketManually 1
out/extension.js
-
LOWpostinstall registry modification 1
out/extension.js
-
LOWpostinstall obfuscation 1
out/extension.js
-
LOWpostinstall network communication 5
package.jsonextension.vsixmanifestchangelog.md +2 more
-
LOWcredential gcp config 1
out/extension.js
-
LOWpostinstall system command 4
LICENSE.txtextension.vsixmanifestout/extension.js +1 more
-
LOWUsingShellInterpreterWhenExecutingOSCommands 1
out/extension.js
-
LOWServerHostnameNotVerified 1
out/extension.js
-
LOWDebuggerStatementsShouldNotBeUsed 1
out/extension.js
-

Network Indicators

Concrete URLs, domains, IPs, emails, and hashes extracted from the analyzed artifact.

87 total
...

Network indicators are queued for lazy loading

Scroll this section into view to load the detailed rows.

Publisher Evidence

High

Google Cloud

Publisher identity, store signals, distribution reach, and warning signals used for context. Treat this as supporting evidence, not a clean bill of health.

100
Noisy-finding weight
x0.50
Publisher domain
google.com
Trusted match
Store verification signal
Verified publisher
Verified
Extension portfolio
557
Portfolio

11 evidence rows available.

Finding Categories

2
Obfuscation
87
IoC Indicators

YARA Rules Matched

17 rules(25 hits)
RedirectToUnknownPath credential env files postinstall persistence mechanism postinstall file download credential gcp credentials NoUseWeakRandom postinstall crypto operations postinstall file manipulation NoUseSocketManually postinstall registry modification postinstall obfuscation postinstall network communication credential gcp config postinstall system command UsingShellInterpreterWhenExecutingOSCommands ServerHostnameNotVerified +1 more

AI Security Report

AI Security Review

Evidence context: threat category none; evidence quality weak.

The Workbench Notebooks extension from GoogleCloudTools presents a clean security profile with no findings across any category. The extension's stated purpose is to connect notebooks to Workbench instances, which is a legitimate development workflow for Google Cloud Workbench users. The findings_by_category field is empty, indicating no YARA code-smell detections, no IoC matches, no obfuscation findings, and no credential access patterns were identified during analysis.

Filesystem and process access cannot be evaluated from the provided evidence since no findings were reported. However, extensions that connect to cloud development environments legitimately require network connectivity and may access workspace files to establish notebook connections. This is expected behavior for the extension's stated purpose of connecting notebooks to Workbench instances.

No credential-access findings were detected, which is significant given that cloud development tools often interact with authentication systems. The absence of findings targeting .env files, .git/config, SSH keys, or cloud credential stores indicates the extension does not exhibit suspicious secret-reading behavior.

The strongest counterargument to this verdict is the very low user count (21 users) combined with the early version number (0.1.1). Low adoption could indicate a recently published extension that hasn't been scrutinized by the community, or it could be a niche tool with limited visibility. However, the GoogleCloudTools publisher name indicates this is an official Google extension rather than a third-party impersonation attempt. Official Google extensions undergo internal review processes that provide additional security assurance beyond marketplace review.

The empty findings list is a positive indicator rather than a data gap. Security analysis tools would typically detect at least some code-smell patterns in non-trivial JavaScript, particularly in extensions with network and file access capabilities. The absence of findings suggests either minimal code surface area or thorough security practices during development.

This extension represents a legitimate development tool from a verified publisher with no detected security concerns. The low user count and early version reflect product maturity rather than security risk.

Key Reasons

  • Official GoogleCloudTools publisher
  • No security findings detected
  • Legitimate stated purpose for notebook connectivity
  • No credential access or exfiltration patterns

Reviewed 2026-04-21; recommended action: no action; model confidence 85%.

VS Code version history

Risk trend by version

3 analyzed versions. Each point is the latest successful scan for that version; failed zero-score scans are hidden. Dates are based on first seen by risky plugins.

Selected
62
Change since first
+10
Change from previous
+16
Versions:
First analyzed version
0.1.0
Apr 16, 2026
Risk range
46 to 62
Across analyzed versions
Latest analyzed version
0.2.0
Sep 4, 2026
Selected version
medium
Version
v0.2.0
3 weeks ago
Risk score
62
Findings
122
Change vs previous
+16

Pick any point on the chart to explore that version's code below.

About This Extension

Connect notebooks to Workbench instances.

Frequently Asked Questions