Manage what your teams install

Know what to Allow.

Automatically vet and continuously monitor Visual Studio Code extensions. Enforce your allowlist through the endpoint management tools you already use.

✓ 30-day free trial✓ No new endpoint agent
Jessica asks Mike to approve a new extension; Allow shows approved VS Code extensions, a completed assessment, and continuous monitoring.
How it works

From extension request to enforced policy.

Keep requests, automated assessment, and enforcement in one workflow.

01
+

Add an extension

A user requests an extension or an administrator adds one to Allow.

02

Allow vets it

The automated pipeline analyzes the extension and produces a customer-facing result.

03

Publish allowed versions

Only extensions with an Allowed result enter the selected allowlist feed.

04

Enforce with your tools

Apply that feed through your existing Intune or macOS MDM workflow.

No new endpoint agent. No new enforcement platform.
VS Code governance

Assess VS Code extensions and deploy the result with the tools you already use.

Visual Studio CodeExtension platformSupported
Microsoft IntuneEndpoint enforcementSupported
JamfEndpoint enforcementSupported
Allowlist feedsMachine-readable policySupported
Simple by design

Simple pricing. No surprises.

One plan. The full platform. No feature gates, seat calculations, or negotiation required.

No complex licensing tiers.Everyone gets the complete Allow workflow.

FULL PLATFORM
€200per allowlist / month
  • Continuous extension assessment
  • Static and behavioral analysis
  • Runtime inspection where needed
  • Version-aware monitoring
  • Central allowlist management
  • Deployment packages
  • Assessment evidence
  • 30-day free trial
Start your free trial
Why Allow

Enforcement is only half the problem.

Endpoint management tools can control which extensions are installed. They do not tell you which extensions should be trusted.

Store signals ≠ trust

Extension stores are not security controls

Ratings, download counts, popularity, and publisher reputation are not substitutes for a security assessment.

Point-in-time ≠ continuous

Manual reviews do not scale

Extensions change. New versions appear, behavior shifts, and fresh risks can emerge after the original approval.

Enforcement ≠ decision

Know what belongs in policy

MDM can enforce a policy. Allow helps your team determine what should be in it.

Product capabilities

One place to manage extension trust.

A decision workspace for security teams, backed by continuous, multi-layered assessment.

Assessment pipeline

Evidence at every stage. A clear result at the end.

Allow applies deeper validation where it adds value, without turning the assessment into a black box.

New versionCompare with previously trusted version
1Extension
2Static analysis
3Behavior analysis
4Runtime when needed
ASSESSMENT RESULTALLOWCANNOT VETBLOCK
FAQ

Questions, answered.

Everything you need to evaluate Allow with confidence.

Read the documentation Browse all guides →

Allow is a Visual Studio Code extension security and allowlist management platform. It automatically vets extensions, publishes allowed versions, and monitors them as they change.

Start with your first allowlist

Take control of your extensions.

Give teams a clear request path and enforce only versions that Allow has vetted.

Start your free trial 30 days free · No new endpoint agent