data-pipeline

Pass

Audited by Gen Agent Trust Hub on Jul 8, 2026

Risk Level: SAFE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to process data from external sources, which is an inherent characteristic of ETL (Extract, Transform, Load) workflows.
  • Ingestion points: SKILL.md identifies potential data sources including Shopify, Stripe, PostgreSQL, MongoDB, and REST APIs.
  • Boundary markers: The provided templates do not explicitly define boundary markers or delimiters for untrusted data.
  • Capability inventory: The skill leverages tools such as database_query, api_fetch, spreadsheet_write, and file_transform to execute its workflows.
  • Sanitization: Documentation examples include basic data cleaning steps such as trimming whitespace, type casting (e.g., parseFloat), and field mapping to normalize incoming data.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 8, 2026, 07:46 PM
Security Audit — agent-trust-hub — data-pipeline