113-java-maven-documentation
Pass
Audited by Gen Agent Trust Hub on Aug 1, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security vulnerabilities were found. The skill is designed with defensive patterns for handling project data.
- [DATA_EXFILTRATION]: While the skill reads local Maven configuration files, it employs an allowlist approach to extract only structural metadata, explicitly avoiding the ingestion of potentially sensitive free-text fields or configurations.
- [PROMPT_INJECTION]: The skill mitigates risks from untrusted project files by treating them as untrusted input and using specific XML queries to ignore non-structural content where malicious instructions might be hidden.
Audit Metadata