sql-object-impact-analysis

Pass

Audited by Gen Agent Trust Hub on Sep 20, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process untrusted data from repository source code and SQL scripts, creating an attack surface where malicious instructions embedded in the code could attempt to influence the agent's behavior.
  • Ingestion points: Processes all .sql files and application code files (C#, Java, JS/TS, etc.) within the target repository.
  • Boundary markers: The instructions do not specify the use of delimiters or 'ignore' instructions to separate analyzed content from the agent's primary instructions.
  • Capability inventory: The skill is limited to file reading and text searching to generate a report; it does not request capabilities for file modification, network communication, or arbitrary command execution.
  • Sanitization: There are no explicit requirements for sanitizing or escaping the content retrieved from repository files before it is included in the output report.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 20, 2026, 05:56 PM
Security Audit — agent-trust-hub — sql-object-impact-analysis