Audit History
microsoft-azure-webjobs-extensions-authentication-events-dotnet - 5 audits
Version comparison
Capability and finding changes across audited versions, newest first.
| Version | Date | Result | Review items | Change vs previous |
|---|---|---|---|---|
| v5 Latest | Aug 4, 2026, 02:10 PM | No confirmed findings | 0 | No capability change |
| v4 | Jul 7, 2026, 12:40 AM | No confirmed findings | 0 | No capability change |
| v3 | Jul 7, 2026, 12:40 AM | No confirmed findings | 0 | External commands |
| v2 | Jun 30, 2026, 04:10 PM | 1 confirmed | 2 | Network access |
| v1 | Feb 25, 2026, 10:04 AM | No confirmed findings | 0 | Baseline |
Aug 4, 2026, 02:10 PM
All 54 static findings are false positives caused by Markdown formatting, illustrative code, reserved example URLs, official reference links, or ordinary guidance. No executable automation, prompt injection, data exfiltration intent, or malicious system reconnaissance was found.
Risk Factors
⚙️ External commands (47)
🌐 Network access (6)
Jul 7, 2026, 12:40 AM
All static findings were adjudicated as false positives caused by Markdown code fences, inline SDK names, sample commands, and documentation links. No prompt injection, hidden execution, credential access, or malicious data exfiltration intent was found in SKILL.md. The skill is documentation-focused, but examples that touch authentication data still need normal production review before use.
Risk Factors
⚙️ External commands (47)
🌐 Network access (6)
Jul 7, 2026, 12:40 AM
All static findings were adjudicated as false positives caused by Markdown code fences, inline SDK names, sample commands, and documentation links. No prompt injection, hidden execution, credential access, or malicious data exfiltration intent was found in SKILL.md. The skill is documentation-focused, but examples that touch authentication data still need normal production review before use.
Risk Factors
⚙️ External commands (47)
🌐 Network access (6)
Jun 30, 2026, 04:10 PM
The static command-execution findings are false positives from Markdown fences and inline package-install examples in SKILL.md. The weak-crypto and reconnaissance alerts are also false positives, but the guide includes examples that call an external user-profile API and log a phone number in an authentication flow. Publish with a warning that copied implementations must protect authentication data, avoid unnecessary external disclosure, and limit PII logging.
Confirmed security concerns (1)
Capability review items (2)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Static false positives ignored (3)
These static matches were dismissed by semantic review or matched schema-only tokens, so they are shown for transparency but do not drive the quality score.
Risk Factors
🌐 Network access (2)
Detected Patterns
Feb 25, 2026, 10:04 AM
Prompt-only documentation skill for Microsoft Azure WebJobs Authentication Events SDK. No executable code detected. Static analysis scanned 0 files with 0 security findings. This skill provides reference documentation and code examples for implementing Azure Functions triggers for Entra ID authentication events including token issuance, attribute collection, and OTP delivery. Safe to publish as educational content.