devexpress-wpf-tree-list

Pass

Audited by Gen Agent Trust Hub on Aug 18, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install official NuGet packages (DevExpress.Wpf.Grid.Core, DevExpress.Wpf.Printing) from a well-known public registry. It also provides links to official documentation on the devexpress.com domain, which is a recognized vendor resource for this skill.
  • [COMMAND_EXECUTION]: Provides standard command-line instructions using the dotnet CLI for package management and project building. These commands are typical for the described development environment and contain no suspicious parameters.
  • [PROMPT_INJECTION]: Instructions were analyzed for attempts to bypass safety filters or override agent behavior. No such patterns were detected. Instructional language like 'Important' is used correctly in a technical context.
  • [DATA_EXFILTRATION]: No evidence of unauthorized data access, hardcoded credentials, or external exfiltration attempts was found. The skill includes standard functionality for saving and restoring UI layouts locally.
  • [OBFUSCATION]: The content was scanned for Base64 encoding, zero-width characters, homoglyphs, and other obfuscation techniques. No hidden or suspicious content was detected.
  • [REMOTE_CODE_EXECUTION]: No remote script downloads or execution patterns were identified. The skill relies on local compilation and standard library execution.
  • [INDIRECT_PROMPT_INJECTION]: The skill describes a UI component that processes hierarchical data. While this represents a data ingestion surface common to UI frameworks, the skill does not expose capabilities that would allow for malicious command execution or sensitive data access via processed data.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 18, 2026, 01:48 PM
Security Audit — agent-trust-hub — devexpress-wpf-tree-list