xdto-decompile

Pass

Audited by Gen Agent Trust Hub on Aug 24, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill performs local file processing to convert proprietary 1C XDTO formats to standard XSD. The analysis confirmed that all operations are local and serve the stated purpose.
  • [HOMOGLYPH]: The static detector flagged potential homoglyphs in the documentation. Analysis reveals these are legitimate Cyrillic characters used in a Russian-language description for a tool targeting the 1C:Enterprise ecosystem, which primarily uses Russian identifiers. They do not represent a phishing or typosquatting attempt.
  • [COMMAND_EXECUTION]: The skill executes powershell.exe to run its internal script. This is a standard execution pattern for PowerShell-based skills and is scoped to the skill's own directory.
  • [EXTERNAL_DOWNLOADS]: The scripts contain references to a GitHub repository (github.com/Nikolay-Shirokov/cc-1c-skills). These are documentation headers providing source attribution and do not trigger runtime downloads. The author is the same as the skill vendor.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 24, 2026, 01:54 PM
Security Audit — agent-trust-hub — xdto-decompile