logging-patterns

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSDATA_EXFILTRATIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill serves as a documentation resource for implementing structured logging in Java applications. It includes configuration examples for Spring Boot and standard Logback appenders.- [EXTERNAL_DOWNLOADS]: The skill references official documentation and well-known technical resources such as Spring.io, Baeldung, and SLF4J.org. It mentions standard industry libraries like net.logstash.logback:logstash-logback-encoder without using untrusted sources or remote execution methods.- [DATA_EXFILTRATION]: The skill includes a dedicated 'What NOT to Log' section, providing explicit warnings against logging sensitive data such as passwords, tokens, PII, and SSNs, which promotes secure coding practices.- [INDIRECT_PROMPT_INJECTION]: While the skill encourages using AI to analyze log files (which could contain malicious input from untrusted external sources), it provides standard diagnostic shell commands (cat, jq) for user-controlled analysis and emphasizes sanitizing log output to prevent data exposure.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 12:17 AM
Security Audit — agent-trust-hub — logging-patterns