Skip to content
| Marketplace
Sign in
Visual Studio Code>Other>extcheck: extension risk checkNew to Visual Studio Code? Get it now.
extcheck: extension risk check

extcheck: extension risk check

hieu10x

| (0) | Free
Check your installed extensions and your workspace's recommended extensions against Microsoft's block list, the VS Code Marketplace and Open VSX (names anyone could claim in Cursor, Windsurf or VSCodium).
Installation
Launch VS Code Quick Open (Ctrl+P), paste the following command, and press enter.
Copied to clipboard
More Info

extcheck for VS Code

Two commands (Command Palette → "extcheck"):

  • Check my installed extensions
  • Check this workspace's recommended extensions (.vscode/extensions.json, devcontainer.json)

Each opens a Markdown report: anything on Microsoft's malicious or deprecated lists, IDs that don't exist on the Marketplace, IDs whose namespace doesn't exist on Open VSX (Cursor, Windsurf and VSCodium install from there, so anyone could publish under that name), and extensions with no release in 3+ years.

It runs only when you call a command, and sends extension IDs only to the VS Code Marketplace, Open VSX and Microsoft's CDN. Nothing is stored or sent anywhere else.

Same checks on the web: extcheck.pages.dev. Source and the GitHub Action: github.com/hieu10x/extcheck.

Built by Hieu Tran with AI agents. MIT licensed.

  • Contact us
  • Jobs
  • Privacy
  • Manage cookies
  • Terms of use
  • Trademarks
  • Your Privacy Choices
  • Consumer Health Privacy
© 2026 Microsoft