m365-agents-py

Fail

Audited by Gen Agent Trust Hub on Feb 13, 2026

Risk Level: HIGH
Full Analysis
  • [SAFE] (INFO): No malicious patterns or security vulnerabilities were identified. The file serves as technical documentation.\n- [EXTERNAL_DOWNLOADS] (INFO): The document references several PyPI packages under the microsoft-agents namespace and a GitHub repository at https://github.com/microsoft/Agents-for-python. Since 'microsoft' is a Trusted GitHub Organization, these references are considered safe and routine for the stated purpose of the skill.\n- [MALICIOUS_URL_ANALYSIS] (INFO): Automated analysis flagged the domain 'authentication.ms'. Manual review confirms this is a false positive triggered by the string 'authentication.msal', which is a valid sub-module path within the microsoft-agents-authentication-msal library. No actual navigation or request to the 'authentication.ms' TLD is performed.\n- [DATA_EXFILTRATION] (SAFE): The documentation promotes secure configuration practices, including the use of environment variables and explicitly warning against the use of hardcoded secrets.
Recommendations
  • Contains 1 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
HIGH
Analyzed
Feb 13, 2026, 12:58 PM