databases

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONDYNAMIC_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The script scripts/db_backup.py executes database CLI tools such as mongodump, mongorestore, pg_dump, and psql using the subprocess module. These operations are the primary purpose of the skill for performing database administrative tasks.
  • [INDIRECT_PROMPT_INJECTION]: The performance analysis tool in scripts/db_performance_check.py samples data from database collections and query logs.
  • Ingestion points: Reads collection data and system.profile logs in scripts/db_performance_check.py.
  • Boundary markers: Results are output as plain text or JSON without explicit sanitization markers.
  • Capability inventory: Uses subprocess for backups and has full database write access through migrations.
  • Sanitization: No specific sanitization of database content is performed before generating reports.
  • [DYNAMIC_EXECUTION]: The scripts/db_migrate.py script loads and executes SQL commands and MongoDB operations from JSON migration files stored in the local migrations/ directory. This is intended behavior for a database migration utility.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 05:15 AM
Security Audit — agent-trust-hub — databases