syncfusion-winforms-spreadsheet-editor

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references official Syncfusion NuGet packages (e.g., Syncfusion.Spreadsheet.Windows, Syncfusion.SpreadsheetHelper.Windows) as project prerequisites. These are recognized vendor-owned resources and do not represent a security risk.
  • [COMMAND_EXECUTION]: Reference documentation (e.g., conversion.md) contains C# code snippets that use System.Diagnostics.Process.Start to launch viewers for generated files like PDFs, HTML pages, and images. This is a standard utility function for developer-facing tools to facilitate output review.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to open and import data from Excel files (.xlsx, .xls) and DataTables. This ingestion of external data constitutes a potential attack surface; however, the skill's operational instructions include a strict consent and destination gate (Step 2 in SKILL.md) that prevents unauthorized file access or modification without explicit user confirmation.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 10:02 AM
Security Audit — agent-trust-hub — syncfusion-winforms-spreadsheet-editor