dotnet-wpf
Pass
Audited by Gen Agent Trust Hub on Jul 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides purely instructional content for WPF development conventions and does not contain any malicious patterns or commands.
- [SAFE]: The skill identifies and warns against known security risks, such as the use of
BinaryFormatterfor clipboard payloads (RCE vector), recommending JSON serialization as a secure alternative. - [SAFE]: All referenced libraries and tools, including
CommunityToolkit.Mvvm,Microsoft.Extensions.Hosting, andXAML Styler, are well-known industry standards from trusted providers. - [SAFE]: Indirect Prompt Injection Surface Analysis:
- Ingestion points: User-provided XAML and C# source files (ViewModels, code-behind).
- Boundary markers: None specified in instructions.
- Capability inventory: File modification via agent tools.
- Sanitization: Instructions recommend against insecure deserialization. The surface is standard for coding assistants and no exploitable instructions are present.
Audit Metadata