supabase-postgres-best-practices

Pass

Audited by Gen Agent Trust Hub on Aug 7, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No functional security risks or malicious behaviors were identified in the skill content. All files are documentation-oriented markdown.
  • [PROMPT_INJECTION]: The skill provides a set of instructions that guide how an AI agent should write and optimize SQL, creating a surface for indirect prompt injection. However, the instructions represent industry best practices.
  • Ingestion points: 31 markdown files located in the /references directory.
  • Boundary markers: Not present.
  • Capability inventory: Influences database schema design, SQL generation, and RLS policy creation.
  • Sanitization: Not applicable to static documentation.
  • [PROMPT_INJECTION]: There is a documentation inconsistency in the authorship metadata. The SKILL.md metadata identifies 'Supabase' as the author and organization, while the technical author context identifies the user as 'domush'. This appears to be a mirroring or contribution of official Supabase documentation.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 7, 2026, 10:57 PM
Security Audit — agent-trust-hub — supabase-postgres-best-practices