java-route-mapper

Pass

Audited by Gen Agent Trust Hub on May 1, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes standard system commands including find, java, and grep to locate files, execute a Java decompiler, and verify the consistency of its output. These operations are performed on local project files as part of the intended workflow for a source code analysis tool.
  • [INDIRECT_PROMPT_INJECTION]: The skill is intended to process untrusted data in the form of Java source code and configuration files. To mitigate risks associated with this attack surface, the instructions provide rigid output templates and mandatory validation steps that the agent must follow when generating reports.
  • [EXTERNAL_DOWNLOADS]: The skill references a decompiler tool (CFR_JAR). The instructions assume this tool is available in the environment and do not provide commands to download it from untrusted or unknown remote locations.
Audit Metadata
Risk Level
SAFE
Analyzed
May 1, 2026, 04:41 AM