metabase-modular-embedding-to-modular-embedding-sdk-upgrade

Pass

Audited by Gen Agent Trust Hub on Apr 9, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill fetches documentation from Metabase's official website and utilizes the npm registry to download the official Metabase embedding SDK package. These operations are restricted to verified vendor sources and are used for API verification purposes.\n- [COMMAND_EXECUTION]: Executable scripts and command-line tools (bash, npm, tsc) are employed to manage the SDK lifecycle and perform type-safety validation on the migrated code.\n- [CREDENTIALS_UNSAFE]: A 'Credential safety' protocol is explicitly defined, instructing the agent to identify and protect hardcoded secrets by referencing them via variable names rather than exposing their literal values.\n- [DATA_EXFILTRATION]: No unauthorized data transmission was detected. Network operations are exclusively performed against trusted Metabase domains and standard package management services.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 9, 2026, 11:41 PM