Shouldn’t there be another option in this alert/notification, e.g. report to Avast so that it isn’t falsely reported, e.g. not causing concern to the user if this is a valid function in Edge. Given that all browsers with the ability to save login details, why wouldn’t all browser that do this be pinged.
Presumably the msedge.exe should be digitally signed by MS ?
Not seen it on Firefox regular release (not ESR) and I used its save logins and passwords for web sites function for some considerable time and not seen this.