kmp-openrewrite
Pass
Audited by Gen Agent Trust Hub on Sep 23, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill documents the use of the official OpenRewrite Gradle plugin and standard recipe bundles from the org.openrewrite group. These are industry-standard tools for AST-based refactoring.
- [SAFE]: The recommended operational workflow includes mandatory safety gates, specifically the use of
rewriteDryRunto generate a patch file for human/agent review before modifying any source files. - [SAFE]: The skill provides instructions for managing configuration dynamically via CLI flags (
-Drewrite.activeRecipes), which avoids the need to permanently alter project build logic during ad-hoc migrations. - [SAFE]: No signs of prompt injection, data exfiltration, or obfuscation were detected. All code examples and shell commands are transparent and align with the stated purpose of code refactoring.
- [SAFE]: The skill promotes maintaining a clean Git state, allowing for easy rollbacks and clear auditing of changes made by the automated tool.
Audit Metadata