dotnet-secrets-management
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is purely instructional and follows industry-standard security practices for .NET development. It uses placeholder credentials (e.g., 'dev123', 'dev-key-here') in examples solely for demonstration purposes.
- [SAFE]: The 'Agent Gotchas' section provides defensive guardrails to prevent the AI agent from accidentally generating insecure code, which enhances the safety of the skill's output.
- [SAFE]: Mentions of sensitive file paths like '.env' and 'secrets.json' are provided in the context of explaining standard .NET configuration mechanisms and do not involve unauthorized access or exfiltration.
Audit Metadata