dotnet-core-expert
Fail
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: CRITICALEXTERNAL_DOWNLOADSMETADATA_POISONINGCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The documentation URL
https://jeffallan.github.io/claude-skills/skills/backend/dotnet-core-expert/included inSKILL.mdis flagged as malicious by automated scanners (URLite Blacklist). \n- [METADATA_POISONING]: The fileSKILL.mdhas been flagged by file reputation scanners as potentially malicious (FileRepMalware). \n- [METADATA_POISONING]: The skill metadata lists the author asJeffallan, which contradicts the platform-provided author identity ofsodiqabdulwaris. This discrepancy is a strong indicator of deceptive packaging or impersonation. \n- [COMMAND_EXECUTION]: The core workflow requires the execution of shell commands such asdotnet buildanddotnet test. While standard in the .NET ecosystem, these commands pose a high risk when executed in an environment associated with malicious file reputations and blacklisted URLs. \n- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process external requirements and code files without sufficient isolation or validation, making it vulnerable to indirect injection. \n - Ingestion points: Project requirements, API designs, and C# source code provided by the user and processed by the agent. \n
- Boundary markers: Absent; the skill does not instruct the agent to use delimiters or ignore instructions embedded in the user project. \n
- Capability inventory: Extensive use of shell commands through the
dotnetCLI, which allows for subprocess execution. \n - Sanitization: Absent; the skill lacks any mechanism to validate or escape external input before processing it via instructions or commands.
Recommendations
- CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
- AI detected serious security threats
- Contains 2 malicious URL(s) - DO NOT USE
Audit Metadata