postgres-schema-and-migration
Pass
Audited by Gen Agent Trust Hub on Jun 17, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to execute a shell command to perform a mandatory dry-run of migrations in a disposable environment. Evidence in
SKILL.md(Step 9):docker run --rm -e POSTGRES_PASSWORD=x -p 5432:5432 postgres:16. This command uses a well-known official image from a well-known service for local validation purposes. - [PROMPT_INJECTION]: The skill processes untrusted external data in the form of domain entities and existing database schemas, presenting an indirect prompt injection surface. \n
- Ingestion points:
SKILL.md(Step 1: "Gather domain and access patterns... Existing schema or Flyway/Liquibase migrations"). \n - Boundary markers: Absent. \n
- Capability inventory: Shell command execution via Docker in
SKILL.mdand file writing to target migration directories. \n - Sanitization: Not explicitly defined for the analysis of input schemas.
Audit Metadata