syncfusion-aspnetcore-pivot-table

Pass

Audited by Gen Agent Trust Hub on Sep 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is entirely educational and functional, providing documentation for a legitimate UI component library. It includes dedicated sections for security best practices and warnings regarding data source validation.
  • [INDIRECT_PROMPT_INJECTION]: While the skill establishes a data ingestion surface by connecting to remote APIs and databases (e.g., in data-binding.md and mssql.md), it explicitly warns against using untrusted sources. It provides a 'CRITICAL SECURITY NOTICE' advising on the use of authenticated endpoints and input sanitization to prevent data-driven attacks. This risk is inherent to the component's primary analytical purpose and is addressed with appropriate guidance.
  • [DATA_EXPOSURE_&_EXFILTRATION]: Database connection examples in files like mysql.md, mssql.md, and oracle.md use placeholders for sensitive credentials (e.g., <Enter your valid connection string here>). The skill recommends using IConfiguration and appsettings.json for secret management, which is an industry-standard safe practice.
  • [EXTERNAL_DOWNLOADS]: Network requests demonstrated in the documentation (e.g., fetching sample data from bi.syncfusion.com) target official vendor domains and are documented neutrally as part of the component's standard data-binding functionality.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 22, 2026, 02:08 PM
Security Audit — agent-trust-hub — syncfusion-aspnetcore-pivot-table