devexpress-wpf-tree-list
Pass
Audited by Gen Agent Trust Hub on Aug 18, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the user to install official NuGet packages (
DevExpress.Wpf.Grid.Core,DevExpress.Wpf.Printing) from a well-known public registry. It also provides links to official documentation on the devexpress.com domain, which is a recognized vendor resource for this skill. - [COMMAND_EXECUTION]: Provides standard command-line instructions using the
dotnetCLI for package management and project building. These commands are typical for the described development environment and contain no suspicious parameters. - [PROMPT_INJECTION]: Instructions were analyzed for attempts to bypass safety filters or override agent behavior. No such patterns were detected. Instructional language like 'Important' is used correctly in a technical context.
- [DATA_EXFILTRATION]: No evidence of unauthorized data access, hardcoded credentials, or external exfiltration attempts was found. The skill includes standard functionality for saving and restoring UI layouts locally.
- [OBFUSCATION]: The content was scanned for Base64 encoding, zero-width characters, homoglyphs, and other obfuscation techniques. No hidden or suspicious content was detected.
- [REMOTE_CODE_EXECUTION]: No remote script downloads or execution patterns were identified. The skill relies on local compilation and standard library execution.
- [INDIRECT_PROMPT_INJECTION]: The skill describes a UI component that processes hierarchical data. While this represents a data ingestion surface common to UI frameworks, the skill does not expose capabilities that would allow for malicious command execution or sensitive data access via processed data.
Audit Metadata