113-java-maven-documentation

Pass

Audited by Gen Agent Trust Hub on Aug 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security vulnerabilities were found. The skill is designed with defensive patterns for handling project data.
  • [DATA_EXFILTRATION]: While the skill reads local Maven configuration files, it employs an allowlist approach to extract only structural metadata, explicitly avoiding the ingestion of potentially sensitive free-text fields or configurations.
  • [PROMPT_INJECTION]: The skill mitigates risks from untrusted project files by treating them as untrusted input and using specific XML queries to ignore non-structural content where malicious instructions might be hidden.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 1, 2026, 11:00 AM
Security Audit — agent-trust-hub — 113-java-maven-documentation