spring-boot-engineer
Pass
Audited by Gen Agent Trust Hub on Aug 2, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns detected. The skill provides high-quality implementation guidance for Spring Boot, adhering to security standards.
- [COMMAND_EXECUTION]: The skill instructs the agent to execute build and test commands (./mvnw test, ./gradlew test). These are standard development operations and are necessary for the skill's primary purpose of engineering and verifying Spring Boot applications.
- [EXTERNAL_DOWNLOADS]: Mentions well-known and official resources such as Docker images (eclipse-temurin, postgres) and GitHub-hosted documentation. These are reputable sources and do not represent a security risk.
- [DATA_EXFILTRATION]: Provides configuration for Spring Boot Actuator endpoints (e.g., /actuator/health). While these expose system information, the instructions explicitly guide the user to secure these endpoints and use them for legitimate observability purposes.
Audit Metadata