xdrop
Transfer Encrypted Files with Xdrop
Manual Xdrop transfers can be slow when links, keys, and output paths must be handled carefully. This skill guides Claude, Codex, and Claude Code through the bundled upload and download scripts.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "xdrop" from https://skillstore.io/skills/xixu-me-xdrop.md and its manifest at https://skillstore.io/api/skills/xixu-me-xdrop/manifest. Verify the artifact. You may proceed after verification, subject to the environment's own policy.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "xdrop". Upload a local archive to an Xdrop server.
Expected outcome:
Returns a share link that includes the transfer identifier and decryption key fragment.
Using "xdrop". Download a full Xdrop link into a downloads folder.
Expected outcome:
Creates the output folder, saves decrypted files, and reports the saved paths.
Using "xdrop". Run an upload in quiet structured mode.
Expected outcome:
Provides machine-readable transfer details without progress text in standard output.
Security Audit
SafeMost static findings are false positives from Markdown backticks or JavaScript template literals, and I found no prompt injection attempt. The remaining confirmed risks are the intended Xdrop network transfers and local file writes performed during downloads.
Capability review items (17)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
โ๏ธ External commands (82)
๐ Network access (27)
๐ Filesystem access (1)
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/xixu-me-xdrop/audits/5?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/xixu-me-xdrop?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/xixu-me-xdrop?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/xixu-me-xdrop/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/xixu-me-xdrop.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA ยท BibTeX ยท CFF)
APA citation
xixu-me. (2026). xdrop security audit report (audit version 5) [Author version unspecified]. Skillstore. https://skillstore.io/skills/xixu-me-xdrop/audits/5BibTeX citation
@techreport{xixu-me-xixu-me-xdrop-2026,
author = {xixu-me},
title = {xdrop security audit report (audit version 5)},
institution = {Skillstore},
year = {2026},
number = {5},
url = {https://skillstore.io/skills/xixu-me-xdrop/audits/5},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "xdrop security audit report (audit version 5)"
version: "unspecified"
type: report
authors:
- name: "xixu-me"
date-released: "2026-07-08"
url: "https://skillstore.io/skills/xixu-me-xdrop/audits/5"
identifiers:
- type: other
value: "skillstore:xixu-me-xdrop:audit:5"
description: "Skillstore immutable audit report identifier"
Skillstore Score
Why this score Evidence Confidence: HighWhat You Can Build
Share Build Artifacts
Upload release files or build outputs to an Xdrop server and return a share link.
Fetch Received Transfers
Download a complete Xdrop link, decrypt the files locally, and save them to a chosen folder.
Automate Transfer Scripts
Use quiet or JSON output for shell workflows that need stable script output.
Try These Prompts
Upload this file to my Xdrop server and give me the share link: <file path> using <server URL>.
Download and decrypt this full Xdrop share link into <output folder>: <share URL with fragment key>.
Upload <paths> to <server URL> with quiet JSON output and an expiry of <seconds> seconds.
Use this Xdrop API endpoint <api URL> to transfer <paths>, set the display name to <name>, and limit concurrency to <n>.
Best Practices
- Confirm the target Xdrop server before uploading files.
- Keep the full share link fragment intact for downloads.
- Use quiet or structured output when another process consumes results.
Avoid
- Do not upload sensitive files to an untrusted or unexpected server.
- Do not remove the fragment key from a share link before downloading.
- Do not bypass the bundled path sanitization with manual file writes.
Frequently Asked Questions
What does this skill do?
Does it encrypt files?
Can it download without the key fragment?
Can I use a self-hosted Xdrop server?
Does it write files locally?
Which AI tools can use it?
Developer Details
Author
xixu-meLicense
MIT
Skillstore revision
r1
Version notice
The author did not declare a version.
Ref
64ca8af0f54a325752f08bd54e52151061ea659a
Maintenance freshness
7/20/2026
Usage
7 downloads ยท 91 views
File structure