The evidence upload extension whitelist blocked .exe entirely, but sharing a Red team payload binary with Blue for detection analysis is a normal part of this platform's workflow.