postgres-pro

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides legitimate PostgreSQL administration guidance and does not contain malicious code or obfuscation.
  • [DATA_EXPOSURE]: Example SQL configurations use clearly marked placeholders (e.g., 'secure_password', 'remote_password') for credentials, which is standard practice for documentation.
  • [REMOTE_CODE_EXECUTION]: Documentation includes standard PostgreSQL utility commands (e.g., pg_basebackup, pg_repack) and package installation instructions for administrative tools, which are appropriate for the specialist role defined in the metadata.
  • [INDIRECT_PROMPT_INJECTION]: While the skill involves processing external database outputs, it proactively mitigates risks by including a 'MUST DO' constraint to use prepared statements for preventing SQL injection.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 09:18 PM
Security Audit — agent-trust-hub — postgres-pro