skills/github/awesome-copilot/aspire/Gen Agent Trust Hub

aspire

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFEREMOTE_CODE_EXECUTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [REMOTE_CODE_EXECUTION]: Documentation provides installation scripts fetched from the official product domain (aspire.dev) and executed directly in the shell. These commands represent the standard installation procedure for the orchestrated toolset from a trusted source.- [EXTERNAL_DOWNLOADS]: The skill facilitates downloading project templates and tool components from well-known official registries and repositories associated with the product ecosystem.- [COMMAND_EXECUTION]: Instructions describe the use of local CLI tools for resource management, build processes, and orchestration of polyglot applications.- [INDIRECT_PROMPT_INJECTION]: The skill includes capabilities to fetch and process external documentation and runtime resource metadata via the Model Context Protocol (MCP).
  • Ingestion points: MCP tools described in references/mcp-server.md.
  • Boundary markers: Not explicitly defined in instructions, assumes agent-side handling.
  • Capability inventory: CLI command execution and network queries via the Aspire CLI.
  • Sanitization: Dependent on the implementation of the MCP server and agent-side filters.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 06:50 AM
Security Audit — agent-trust-hub — aspire