java-commit — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited java-commit (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Generate a git commit message for the current Java changes. Use the Conventional Commits format tailored to Java/Spring projects.
Run (or ask Claude to run): git diff --staged --stat to see which files changed. If nothing is staged, check git diff --stat for unstaged changes.
Based on the changed files, determine:
service, controller, repository, security)Use this format:
<type>(<scope>): <imperative summary under 72 chars>
[optional body — what changed and why, not how]
[optional footer — breaking changes, issue references]feat: new class, method, endpoint, or featurefix: bug fix in logic, null check, exception handlingrefactor: extract method, rename, restructure — no behaviour changeperf: N+1 fix, index added, caching, virtual threadstest: new or updated JUnit/Mockito/Testcontainers testssecurity: OWASP fix, auth change, secret handling improvementchore: dependency update, build config, version bumpuser-service, order-controller, payment-repositoryauth, security, jpa, api, dtopom, gradle, cifeat(user-service): add findByEmail with case-insensitive search
Adds UserService.findByEmail() using Spring Data derived query.
Returns Optional<User> to handle missing users without null checks.fix(order-controller): return 404 when order not found instead of 500
Previously threw NullPointerException when order ID did not exist.
Now throws ResourceNotFoundException mapped to 404 by GlobalExceptionHandler.perf(product-repository): fix N+1 query with @EntityGraph on findAll
Each product was triggering a separate query for its category.
Added @EntityGraph(attributePaths = "category") to load in one JOIN.refactor(auth-service): replace field injection with constructor injection
Removes @Autowired field injection on JwtTokenProvider and UserDetailsService.
Constructor injection makes dependencies explicit and improves testability.Provide:
git commit -m "$(cat <<'EOF'\n[message]\nEOF\n)"If multiple logical changes are staged together, suggest splitting into separate commits.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.