postgres-schema-and-migration

Pass

Audited by Gen Agent Trust Hub on Jun 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to execute a shell command to perform a mandatory dry-run of migrations in a disposable environment. Evidence in SKILL.md (Step 9): docker run --rm -e POSTGRES_PASSWORD=x -p 5432:5432 postgres:16. This command uses a well-known official image from a well-known service for local validation purposes.
  • [PROMPT_INJECTION]: The skill processes untrusted external data in the form of domain entities and existing database schemas, presenting an indirect prompt injection surface. \n
  • Ingestion points: SKILL.md (Step 1: "Gather domain and access patterns... Existing schema or Flyway/Liquibase migrations"). \n
  • Boundary markers: Absent. \n
  • Capability inventory: Shell command execution via Docker in SKILL.md and file writing to target migration directories. \n
  • Sanitization: Not explicitly defined for the analysis of input schemas.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 17, 2026, 08:35 AM
Security Audit — agent-trust-hub — postgres-schema-and-migration