expanso-nightly-backup

Pass

Audited by Gen Agent Trust Hub on Jun 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
  • [SAFE]: No security issues detected. All operations are consistent with the skill's stated purpose of database backup and follow security best practices by avoiding hardcoded secrets.\n- [COMMAND_EXECUTION]: The skill uses the expanso CLI tool to execute the defined backup pipeline in pipeline.yaml. This tool is part of the vendor's own infrastructure and its execution is central to the skill's functionality.\n- [DATA_EXFILTRATION]: The pipeline extracts data from local database tables (orders, inventory, order_items) and transmits it to Google Cloud Storage. This operation is documented and intended for disaster recovery purposes, utilizing environment variables for all authentication parameters.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 17, 2026, 10:48 AM
Security Audit — agent-trust-hub — expanso-nightly-backup