aspire
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFEREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [REMOTE_CODE_EXECUTION]: Documentation provides installation scripts fetched from the official product domain (aspire.dev) and executed directly in the shell. These commands represent the standard installation procedure for the orchestrated toolset from a trusted source.- [EXTERNAL_DOWNLOADS]: The skill facilitates downloading project templates and tool components from well-known official registries and repositories associated with the product ecosystem.- [COMMAND_EXECUTION]: Instructions describe the use of local CLI tools for resource management, build processes, and orchestration of polyglot applications.- [INDIRECT_PROMPT_INJECTION]: The skill includes capabilities to fetch and process external documentation and runtime resource metadata via the Model Context Protocol (MCP).
- Ingestion points: MCP tools described in references/mcp-server.md.
- Boundary markers: Not explicitly defined in instructions, assumes agent-side handling.
- Capability inventory: CLI command execution and network queries via the Aspire CLI.
- Sanitization: Dependent on the implementation of the MCP server and agent-side filters.
Audit Metadata