402-frameworks-quarkus-rest

Pass

Audited by Gen Agent Trust Hub on Aug 1, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to run standard Maven commands (./mvnw compile, mvn clean verify) to validate project state before and after applying code improvements. These operations are restricted to the local development environment and are standard for Java/Quarkus workflows.
  • [PROMPT_INJECTION]: As the skill is designed to analyze and refactor external source code, it possesses an indirect prompt injection surface. However, the instructions emphasize safety by requiring compilation checks and following established architectural patterns, and there are no instructions to bypass safety filters or exfiltrate data.
  • [SAFE]: The skill follows security best practices, explicitly advising against leaking sensitive data like passwords or stack traces in API responses, and recommending the use of declarative security annotations like @RolesAllowed.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 1, 2026, 11:00 AM
Security Audit — agent-trust-hub — 402-frameworks-quarkus-rest