dotnet-msix
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill follows security best practices by explicitly instructing users never to commit signing certificates (PFX files) or passwords to source control, recommending the use of CI/CD secrets instead.
- [SAFE]: All command-line examples and scripts utilize standard Windows SDK tools (signtool.exe, MakeAppx.exe) and the .NET CLI in a conventional manner.
- [SAFE]: No suspicious obfuscation, remote code execution patterns, or unauthorized data access vectors were identified.
- [SAFE]: The skill documentation correctly identifies administrative requirements for specific deployment tasks (e.g., provisioned packages) without attempting to bypass security controls.
Audit Metadata