dotnet-trace-collect
Warn
Audited by Socket on Sep 14, 2026
1 alert found:
AnomalyAnomalyreferences/perfcollect.md
LOWAnomalyLOW
references/perfcollect.md
The content is legitimate-looking profiling documentation, not evidence of malware by itself. The primary risks are executing an unverified remote script as root and recommending a fully privileged Kubernetes sidecar with shared process visibility and storage. Review the downloaded script, pin and verify its source or checksum, use a trusted minimal image, and minimize privileges where possible. No direct malicious behavior is demonstrated in the supplied fragment.
Confidence: 98%Severity: 58%
Audit Metadata