quarkus-security
Pass
Audited by Gen Agent Trust Hub on Sep 12, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides standard documentation for implementing authentication using JWT and OIDC, following established security patterns.
- [SAFE]: Input validation examples utilize standard Java Bean Validation (JSR 380) to ensure data integrity and prevent common injection attacks.
- [SAFE]: SQL injection protection is correctly demonstrated through the use of parameterized queries and safe ORM practices with Quarkus Panache.
- [SAFE]: Secret management instructions recommend industry-standard practices such as using environment variables and integration with HashiCorp Vault rather than hardcoding credentials.
- [SAFE]: Security header and CORS configurations follow recommended defensive coding standards to protect against clickjacking, XSS, and unauthorized cross-origin access.
- [SAFE]: Dependency scanning instructions reference well-known and trusted security tools from the OWASP Foundation.
Audit Metadata