intellij-platform-sdk

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFE
Full Analysis

The security analysis of the intellij-platform-sdk skill, authored by gadfly3173, found no security issues or malicious intent. The content is purely educational and technical, providing valid implementation patterns for the IntelliJ Platform.

  • [SAFE]: The skill serves as a high-quality reference for IntelliJ Platform plugin development. It documents the use of official platform APIs such as AnAction, Service, WorkspaceModel, and JBCefBrowser for their intended purposes. The instructions for handling sensitive information (using PasswordSafe) and managing plugin publication (via Gradle signing and environment variables) follow industry security best practices.
  • [SAFE]: All external downloads and repository references, such as mavenCentral() and official JetBrains Gradle plugin sources, are to well-known and trusted services. The skill does not include any remote code execution from unverified sources or attempts to obfuscate URLs or commands. The author's use of the name "Gadfly" in templates is consistent with their provided identity, representing standard vendor branding.
  • [SAFE]: No persistence mechanisms, privilege escalation attempts, or dynamic context injections were found in the skill metadata or body. While the skill instructs the agent to analyze user-provided code, it does so within the context of a legitimate software development assistant, and no exploitable vulnerability surfaces were identified in the instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 11:20 PM
Security Audit — agent-trust-hub — intellij-platform-sdk