azure-ai-projects-py

Fail

Audited by Socket on Feb 13, 2026

2 alerts found:

MalwarefilesystemAccess
MalwareHIGH
SKILL.md

This document is a benign SDK README/instruction set for the azure-ai-projects Python package. The described capabilities (agent and project management, tools for code execution and search, connection integration) are consistent with the stated purpose. There are no signs of covert data exfiltration, obfuscated malware, hardcoded secrets, or suspicious download sources. The primary security consideration is not malicious code in the SDK docs themselves but the legitimate high-privilege features (code execution tools, file access, connectors) which increase operational risk if misconfigured or used with untrusted agents. Users should follow standard security practices: least-privilege credentials, restrict tool access for untrusted agents, and avoid sending sensitive data to model endpoints.

Confidence: 90%Severity: 20%
filesystemAccessLOW
Audit Metadata
Analyzed At
Feb 13, 2026, 10:26 AM
Package URL
pkg:socket/skills-sh/microsoft%2Fagent-skills%2Fazure-ai-projects-py%2F@58c8f5ea5ed33f3c70312fae091131c5a2b931cc