skills/developerscoffee/java-cwe-security-skills/cwe-287-improper-authentication/Gen Agent Trust Hub
cwe-287-improper-authentication
Pass
Audited by Gen Agent Trust Hub on Mar 6, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: The skill is strictly educational and provides guidance on fixing security vulnerabilities without introducing any malicious code or behavior.
- [COMMAND_EXECUTION]: The 'Detection Pattern' section includes a grep command intended for local source code analysis. This command is a standard development tool and poses no security risk.
- [EXTERNAL_DOWNLOADS]: The skill references a GitHub repository from the vendor (DevelopersCoffee) for source attribution. This is a neutral reference to a trusted vendor resource as defined in the analysis guidelines.
Audit Metadata