kmp-openrewrite

Pass

Audited by Gen Agent Trust Hub on Sep 23, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill documents the use of the official OpenRewrite Gradle plugin and standard recipe bundles from the org.openrewrite group. These are industry-standard tools for AST-based refactoring.
  • [SAFE]: The recommended operational workflow includes mandatory safety gates, specifically the use of rewriteDryRun to generate a patch file for human/agent review before modifying any source files.
  • [SAFE]: The skill provides instructions for managing configuration dynamically via CLI flags (-Drewrite.activeRecipes), which avoids the need to permanently alter project build logic during ad-hoc migrations.
  • [SAFE]: No signs of prompt injection, data exfiltration, or obfuscation were detected. All code examples and shell commands are transparent and align with the stated purpose of code refactoring.
  • [SAFE]: The skill promotes maintaining a clean Git state, allowing for easy rollbacks and clear auditing of changes made by the automated tool.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 23, 2026, 07:53 PM
Security Audit — agent-trust-hub — kmp-openrewrite