bigquery-observability
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFE
Full Analysis
- Standard Environment Configuration: The skill outlines legitimate procedures for setting up the Google Cloud SDK, including project configuration and API enablement. These steps are consistent with official Google Cloud documentation for BigQuery and Cloud Monitoring.
- Authentication and Authorization Guidance: The instructions provide standard methods for authenticating using
gcloud auth loginand managing service account credentials via theGOOGLE_APPLICATION_CREDENTIALSenvironment variable. It also correctly maps specific IAM roles to the telemetry views they enable, following the principle of least privilege. - SQL Template Placeholders: The provided SQL queries use placeholders (e.g.,
{project_id},{region}) to allow users to target specific environments. This is a standard pattern for administrative tools and does not introduce security risks when used within the intended agent workflow. - Telemetry and Diagnostic Queries: The skill focuses on retrieving performance metrics, slot utilization, and storage footprints through documented BigQuery
INFORMATION_SCHEMAviews. The usage of these views and thebqCLI for point-lookups aligns with standard observability best practices.
Audit Metadata