dotnet-wpf

Pass

Audited by Gen Agent Trust Hub on Jul 14, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides purely instructional content for WPF development conventions and does not contain any malicious patterns or commands.
  • [SAFE]: The skill identifies and warns against known security risks, such as the use of BinaryFormatter for clipboard payloads (RCE vector), recommending JSON serialization as a secure alternative.
  • [SAFE]: All referenced libraries and tools, including CommunityToolkit.Mvvm, Microsoft.Extensions.Hosting, and XAML Styler, are well-known industry standards from trusted providers.
  • [SAFE]: Indirect Prompt Injection Surface Analysis:
  • Ingestion points: User-provided XAML and C# source files (ViewModels, code-behind).
  • Boundary markers: None specified in instructions.
  • Capability inventory: File modification via agent tools.
  • Sanitization: Instructions recommend against insecure deserialization. The surface is standard for coding assistants and no exploitable instructions are present.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 14, 2026, 06:30 AM
Security Audit — agent-trust-hub — dotnet-wpf