Microsoft Copilot security directory

Azure Database for MySQL

Published by Microsoft

High risk

Azure Database for MySQL Flexible Server provides a fully managed database service for app development and deployment with built-in capabilities, such as high availability, read replicas, custom maintenance and more. Use the connector to connect to Azure database for MySQL Flexible Server databases to read/write data and trigger workflows when your data changes.

Security assessment

Plutonium assessed this connector for permissions, capabilities, and security-relevant behavior.

  • Reads your private information: This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.
  • Can change or update your information: This connector can edit, rename, overwrite, or otherwise modify records in the connected service. If a request gets manipulated, your data could be altered without you noticing.
  • Can permanently delete data: This connector can erase records, files, or accounts. Once deleted the data may be unrecoverable - even an accidental request can cause permanent loss.
  • Can execute code or queries: This connector can run arbitrary queries or code against a database or execution engine. An AI-generated query could be manipulated to exfiltrate, corrupt, or destroy data.

Available capabilities

This add-on exposes 9 tools or capabilities.

  • Delete row
  • Execute a MySQL query
  • Execute Stored Procedure
  • Get row
  • Get rows
  • Get Stored Procedures
  • Get tables
  • Insert row
  • Update row

The interactive security report will load automatically.