sql-pro
Pass
Audited by Gen Agent Trust Hub on Aug 1, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill identifies a vulnerability surface for indirect prompt injection through its processing of external database schema and metadata.
- Ingestion points: The agent is instructed to 'Inspect schema, statistics, and access paths' within SKILL.md.
- Boundary markers: The instructions lack explicit delimiters to isolate schema data from instructions.
- Capability inventory: The skill is capable of generating complex SQL, designing database architectures, and proposing performance optimizations.
- Sanitization: The skill does not define methods for sanitizing or validating incoming schema metadata.
Audit Metadata