dotnet-install
Fail
Audited by Socket on Feb 26, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
Best-available report (Report 1) accurately characterizes a legitimate, multi-platform .NET installation workflow with standard install paths and support for offline and Docker usage. The main risk is download-and-execute patterns; mitigations should emphasize strict source validation, binary verification (hash/pinning), and clear user consent for automated flows. The overall security posture is moderate due to supply-chain considerations but acceptable when using official sources and verified installers.
Confidence: 95%Severity: 90%
Audit Metadata