carto-query-datawarehouse

Pass

Audited by Gen Agent Trust Hub on May 15, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent on how to use the carto CLI to execute SQL queries and management jobs on connected data warehouses like BigQuery, Snowflake, and PostgreSQL. This is the intended primary function of the skill.
  • [EXTERNAL_DOWNLOADS]: For local activity analysis, the documentation recommends installing duckdb via npm. DuckDB is a well-known and trusted analytical database engine. The skill also mentions that the carto CLI downloads activity data to a local cache directory (/tmp/carto-activity-cache/) for offline processing.
  • [DATA_EXFILTRATION]: No unauthorized data exfiltration patterns were detected. All network operations and data transfers are performed through the official carto CLI as part of standard data warehouse operations.
Audit Metadata
Risk Level
SAFE
Analyzed
May 15, 2026, 10:02 PM
Security Audit — agent-trust-hub — carto-query-datawarehouse