creating-springboot-projects
Pass
Audited by Gen Agent Trust Hub on Mar 27, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns detected. The skill provides standard architectural templates and implementation guidelines for Spring Boot development.\n- [PROMPT_INJECTION]: The skill processes untrusted user input to determine project architecture and populate code templates, creating a surface for indirect prompt injection.\n
- Ingestion points: Step 1 in
SKILL.mdcollects user-supplied constraints such as domain complexity, team size, and feature areas.\n - Boundary markers: No explicit boundary markers or instructions to treat user input as untrusted data are present in the workflow.\n
- Capability inventory: The agent uses these inputs to generate file structures and interpolate strings into Java, SQL, and YAML templates via the
assets/directory.\n - Sanitization: There is no instruction to sanitize or validate user input before it is used in code generation or template interpolation.
Audit Metadata