winapp-manifest

Pass

Audited by Gen Agent Trust Hub on Sep 22, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [Command Execution]: The skill utilizes the winapp CLI tool to perform development tasks such as generating manifests and updating visual assets. These commands are executed within the user's local environment to facilitate Windows app packaging.
  • [Indirect Prompt Injection Surface]: The skill provides instructions for processing XML-based manifest files and external image assets. (1) Ingestion points: The skill reads Package.appxmanifest and image files like PNG or SVG. (2) Boundary markers: The skill relies on standard XML delimiters within the manifest structure. (3) Capability inventory: Capabilities include writing to the file system and executing winapp CLI commands. (4) Sanitization: The skill assumes the use of the winapp CLI tool for asset processing and manifest generation. This represents a potential surface for indirect instructions if malicious content were embedded in project files, though the risk is considered consistent with typical developer tools.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 22, 2026, 02:17 PM
Security Audit — agent-trust-hub — winapp-manifest