cwe-522-insufficiently-protected-credentials

Pass

Audited by Gen Agent Trust Hub on Mar 6, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [SAFE]: The skill provides educational content and remediation steps for Java security vulnerabilities. No malicious behavior or high-risk patterns were identified.\n- [COMMAND_EXECUTION]: Provides a standard grep command intended for local use by a developer to find insecure patterns in their code. This is a common and safe practice for security-related educational skills.\n- [EXTERNAL_DOWNLOADS]: Includes a reference to the author's official GitHub repository (DevelopersCoffee/java-cwe-security-skills), which is consistent with the skill's purpose and author context. This is treated as a trusted vendor resource.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 6, 2026, 09:39 PM