skills/developerscoffee/java-cwe-security-skills/cwe-522-insufficiently-protected-credentials/Gen Agent Trust Hub
cwe-522-insufficiently-protected-credentials
Pass
Audited by Gen Agent Trust Hub on Mar 6, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: The skill provides educational content and remediation steps for Java security vulnerabilities. No malicious behavior or high-risk patterns were identified.\n- [COMMAND_EXECUTION]: Provides a standard grep command intended for local use by a developer to find insecure patterns in their code. This is a common and safe practice for security-related educational skills.\n- [EXTERNAL_DOWNLOADS]: Includes a reference to the author's official GitHub repository (DevelopersCoffee/java-cwe-security-skills), which is consistent with the skill's purpose and author context. This is treated as a trusted vendor resource.
Audit Metadata