dotnet-microsoft-extensions

Pass

Audited by Gen Agent Trust Hub on Apr 11, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of instructional markdown files providing best practices for .NET development. No executable code or malicious scripts are included in the skill files.
  • [CREDENTIALS_UNSAFE]: The skill contains a hardcoded password example in references/anti-patterns.md, but it is explicitly documented as a "BAD" practice to illustrate a security vulnerability that users should avoid. It recommends secure alternatives like User Secrets and Key Vault.
  • [DATA_EXFILTRATION]: No data exfiltration logic was identified. The documentation includes explicit warnings against logging sensitive information such as PII or credentials.
  • [PROMPT_INJECTION]: The skill does not contain instructions that attempt to override agent safety guidelines or system prompts.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 11, 2026, 12:41 PM
Security Audit — agent-trust-hub — dotnet-microsoft-extensions