spring-boot-review
Pass
Audited by Gen Agent Trust Hub on Sep 9, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill's primary function is to analyze untrusted Java source code and Spring Boot configuration files provided by the user.
- Ingestion points: The skill evaluates existing Spring Boot codebases, including controllers, entities, and deployment manifests like Dockerfiles (SKILL.md).
- Boundary markers: The instructions do not specify any delimiters or safety warnings for the agent to treat the analyzed code strictly as data, leaving the agent potentially susceptible to instructions embedded within the code comments or string literals being audited.
- Capability inventory: The skill is restricted to textual analysis and providing feedback; it does not request network access, file system write permissions, or the ability to execute subprocesses.
- Sanitization: No sanitization or filtering logic is defined for the input code before it is processed by the agent.
Audit Metadata