-
-
Notifications
You must be signed in to change notification settings - Fork 96
Open
Labels
help wantedExtra attention is neededExtra attention is needed
Description
Describe the bug
A third-party-extension security rater (similar to Snyk) has given this repo's VS Code Extension a "medium" threat level due to:
Publisher didn't verify their listed domain ownership. Publisher verification is a good practice to ensure the publisher is who they say they are. Yet, VS Code publisher verification process is not rigorous enough.
Expected behavior
Please consider if it would be simple and convenient to become "verified" as a publisher. If so, perhaps it may be something you would be willing to do. Or not!
Original error
[Not applicable]
Screenshots
[Not applicable]
Metadata
Metadata
Assignees
Labels
help wantedExtra attention is neededExtra attention is needed