microsoft-skill-creator
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security threats or malicious behaviors were identified within the skill files.
- [COMMAND_EXECUTION]: The skill mentions CLI commands such as
npm install -g @microsoft/learn-cliandmslearn searchas fallback mechanisms when MCP servers are unavailable. These instructions are entirely benign and refer to official, well-known developer utilities. - [EXTERNAL_DOWNLOADS]: The skill references downloading the official
@microsoft/learn-clipackage from the public npm registry. This is a legitimate package from a well-known organization and does not pose a supply chain or security risk.
Audit Metadata