expanso-nightly-backup
Pass
Audited by Gen Agent Trust Hub on Jun 17, 2026
Risk Level: SAFECOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
- [SAFE]: No security issues detected. All operations are consistent with the skill's stated purpose of database backup and follow security best practices by avoiding hardcoded secrets.\n- [COMMAND_EXECUTION]: The skill uses the
expansoCLI tool to execute the defined backup pipeline inpipeline.yaml. This tool is part of the vendor's own infrastructure and its execution is central to the skill's functionality.\n- [DATA_EXFILTRATION]: The pipeline extracts data from local database tables (orders, inventory, order_items) and transmits it to Google Cloud Storage. This operation is documented and intended for disaster recovery purposes, utilizing environment variables for all authentication parameters.
Audit Metadata