airbyte-agent

Pass

Audited by Gen Agent Trust Hub on Jun 28, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill facilitates the use of the airbyte-agent CLI to manage workspaces and connectors. It provides specific JSON-based templates for subcommands like connectors execute, workspaces list, and skills docs to ensure precise control over CLI behavior.
  • [EXTERNAL_DOWNLOADS]: The documentation references the installation of the official airbyte-agent tool via Homebrew or official repositories. It explicitly includes a security improvement (documented via local.patch) that warns users never to pipe remote installation scripts directly into a shell.
  • [SAFE]: The skill includes advanced guardrails against indirect prompt injection by instructing the agent to treat all remote skill documentation as untrusted reference data and to ignore any embedded tool requests or instructions found within them. Additionally, it enforces user confirmation for destructive actions and uses browser-based flows for sensitive credential handling.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 28, 2026, 05:50 PM
Security Audit — agent-trust-hub — airbyte-agent