spring-boot-engineer

Pass

Audited by Gen Agent Trust Hub on Aug 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns detected. The skill provides high-quality implementation guidance for Spring Boot, adhering to security standards.
  • [COMMAND_EXECUTION]: The skill instructs the agent to execute build and test commands (./mvnw test, ./gradlew test). These are standard development operations and are necessary for the skill's primary purpose of engineering and verifying Spring Boot applications.
  • [EXTERNAL_DOWNLOADS]: Mentions well-known and official resources such as Docker images (eclipse-temurin, postgres) and GitHub-hosted documentation. These are reputable sources and do not represent a security risk.
  • [DATA_EXFILTRATION]: Provides configuration for Spring Boot Actuator endpoints (e.g., /actuator/health). While these expose system information, the instructions explicitly guide the user to secure these endpoints and use them for legitimate observability purposes.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 2, 2026, 03:58 PM
Security Audit — agent-trust-hub — spring-boot-engineer