logging-patterns
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSDATA_EXFILTRATIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: The skill serves as a documentation resource for implementing structured logging in Java applications. It includes configuration examples for Spring Boot and standard Logback appenders.- [EXTERNAL_DOWNLOADS]: The skill references official documentation and well-known technical resources such as Spring.io, Baeldung, and SLF4J.org. It mentions standard industry libraries like net.logstash.logback:logstash-logback-encoder without using untrusted sources or remote execution methods.- [DATA_EXFILTRATION]: The skill includes a dedicated 'What NOT to Log' section, providing explicit warnings against logging sensitive data such as passwords, tokens, PII, and SSNs, which promotes secure coding practices.- [INDIRECT_PROMPT_INJECTION]: While the skill encourages using AI to analyze log files (which could contain malicious input from untrusted external sources), it provides standard diagnostic shell commands (cat, jq) for user-controlled analysis and emphasizes sanitizing log output to prevent data exposure.
Audit Metadata