azure-devops
Warn
Audited by Socket on Apr 24, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
Overall BENIGN for the core Azure CLI and official Azure DevOps REST usage: purpose, credentials, and data flows mostly align with a DevOps integration skill. Main risk comes from the optional npx-installed third-party MCP server that receives the PAT, plus the official-but-still-risky curl|bash Linux installer and the skill’s ability to perform consequential DevOps mutations.
Confidence: 84%Severity: 58%
Audit Metadata