database-migration-patterns
Pass
Audited by Gen Agent Trust Hub on Sep 27, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill acts as a template for processing external database schema definitions, creating an ingestion surface for untrusted data.
- Ingestion points: The skill triggers on user-provided schema descriptions and project-specific configuration files such as alembic.ini (SKILL.md).
- Boundary markers: There are no explicit delimiters or boundary markers defined to isolate user-provided data from the agent's instructions during code generation.
- Capability inventory: The skill enables the agent to execute shell commands via the alembic CLI and create or modify Python migration scripts (SKILL.md).
- Sanitization: The migration patterns rely on standard SQLAlchemy and Alembic functionality but do not include explicit sanitization or validation of user-provided identifiers before they are incorporated into generated scripts.
Audit Metadata