Back to extension profile
Extension Security Summary

Python Environments

ms-python.vscode-python-envs@1.37.2026082001
Security outcomeDo not install

Prevent execution pending review: high-confidence abuse-chain evidence matched (remote-vsix-install-chain). This is a preventive policy decision, not a confirmed-malicious label.

Checked version1.37.2026082001
Analysis statusCompleted
Scan date
What this means

The key information before you install.

This is a plain-language summary of the completed analysis for this exact extension version. Technical evidence and workspace actions are available after sign-in.

Permission Passport · exact release

What this extension can reach.

Six consistent access categories, tied to version 1.37.2026082001. Capability describes power—not malicious intent.

Newer release availableLatest is @1.37.2026082101
4 categories observed@1.37.2026082001 analyzed releaseBound artifact identity
Workspace and filesystem accessFiles

Filesystem · Destructive File Activity

Observed
Commands, processes, and install scriptsTerminal

Process Execution

Observed
Outbound connections and remote servicesNetwork

Network

Observed
Credentials, environment, and sensitive configurationSecrets

Not observed in this scan—not a guarantee of absence.

Not observed
Editor commands, webviews, and user interactionEditor

Ide Contributions

Observed
AI models, autonomous tools, MCP, and delegationAgents & tools

Not observed in this scan—not a guarantee of absence.

Not observed
This passport never carries forward to another version.
Review evidence
Release context

Versions

1.37.2026082101Not analyzed1.37.2026082001Do not install1.37.2026081401Not analyzed1.37.2026081301Not analyzed1.37.2026073101Not analyzed1.37.2026073001Not analyzed