oracle-database

Pass

Audited by Gen Agent Trust Hub on Jun 28, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references and provides instructions for downloading various development utilities and frameworks from well-known and trusted sources:
  • Fetches the utPLSQL testing framework from github.com/utPLSQL/utPLSQL.git.
  • Downloads the utPLSQL-cli utility from github.com/utPLSQL/utPLSQL-cli.
  • Retrieves Swagger UI for API documentation from github.com/swagger-api/swagger-ui.
  • Downloads the official Oracle SQLcl utility from download.oracle.com.
  • [PROMPT_INJECTION]: The skill includes defensive instructions and awareness regarding prompt injection:
  • In features/dbms-vector.md, the documentation explicitly warns about the risk of prompt injection in RAG (Retrieval Augmented Generation) pipelines and recommends input sanitization at the application layer.
  • In ords/ords-sample-app.md, the skill includes meta-instructions that guide the AI agent to use only repository files and user-provided context as the source of truth, effectively acting as a safety boundary for the agent's behavior during complex configuration tasks.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 28, 2026, 05:51 PM
Security Audit — agent-trust-hub — oracle-database