dotnet-trace-collect

Warn

Audited by Socket on Sep 14, 2026

1 alert found:

Anomaly
AnomalyLOW
references/perfcollect.md

The content is legitimate-looking profiling documentation, not evidence of malware by itself. The primary risks are executing an unverified remote script as root and recommending a fully privileged Kubernetes sidecar with shared process visibility and storage. Review the downloaded script, pin and verify its source or checksum, use a trusted minimal image, and minimize privileges where possible. No direct malicious behavior is demonstrated in the supplied fragment.

Confidence: 98%Severity: 58%
Audit Metadata
Analyzed At
Sep 14, 2026, 07:07 PM
Package URL
pkg:socket/skills-sh/dotnet%2Fskills%2Fdotnet-trace-collect%2F@98a90ca50147615d36e7d59541f94a97d3ba0aad643c02015bcb3d695e6d1847
Security Audit — socket — dotnet-trace-collect