dotnet-cli-release-pipeline
Audited by Socket on Mar 7, 2026
1 alert found:
Obfuscated FileThe skill presents a coherent, proportionate, and largely benign—though high-value—release automation pipeline for a .NET CLI tool. It leverages standard CI/CD patterns and official distribution channels (GitHub Releases, Homebrew, winget, Scoop, NuGet) with proper versioning and checksums. While there is increased operational risk due to handling multiple credentials and distributing artifacts to several registries, this is expected for a release pipeline and does not introduce evident credential harvesting, data exfiltration, or malicious behavior based on the provided material. Overall, the footprint is aligned with the stated purpose, with moderate security risk largely due to secret management and dependency on external release actions.