Microsoft Copilot security directory

Badgr (Independent Publisher)

Published by Troy Taylor, Hitachi Solutions

High risk

Organizations around the world use Badgr to create branded learning ecosystems that support their communities with skills-based digital credentials, stackable learning pathways, and portable learner records.

Security assessment

Plutonium assessed this connector for permissions, capabilities, and security-relevant behavior.

  • Reads your private information: This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.
  • Can change or update your information: This connector can edit, rename, overwrite, or otherwise modify records in the connected service. If a request gets manipulated, your data could be altered without you noticing.
  • Can permanently delete data: This connector can erase records, files, or accounts. Once deleted the data may be unrecoverable - even an accidental request can cause permanent loss.
  • Can send messages as you: This connector can post messages, emails, or notifications on your behalf. Recipients will believe the message came from you, which makes phishing or social-engineering risks higher.
  • Sends your data to outside companies: Anything you share with this connector flows to a third-party service. That company sees, stores, and may use the data according to their own policies.

Available capabilities

This add-on exposes 41 tools or capabilities.

  • Create a BadgeClass
  • Create a BadgeUser account
  • Create a Collection
  • Create a Issuer
  • Create an Issuer's BadgeClass
  • Delete a BadgeClass
  • Delete a collection
  • Delete an Issuer
  • Get a BadgeClass
  • Get a BadgeUser's profile
  • Get a Collection
  • Get a single Assertion
  • Get an AccessToken
  • Get an Issuer
  • Get Assertions
  • Get Assertions in a user's backpack
  • Get Backpack Assertion details
  • Get BadgeClass's Assertions
  • Get Collections
  • Get Issuer's BadgeClasses
  • Get Issuers
  • Get user's access tokens
  • Get user's BadgeClasses
  • Import a Assertion to backpack

The interactive security report will load automatically.