databases
Pass
Audited by Gen Agent Trust Hub on Sep 15, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONDYNAMIC_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: The script
scripts/db_backup.pyexecutes database CLI tools such asmongodump,mongorestore,pg_dump, andpsqlusing thesubprocessmodule. These operations are the primary purpose of the skill for performing database administrative tasks. - [INDIRECT_PROMPT_INJECTION]: The performance analysis tool in
scripts/db_performance_check.pysamples data from database collections and query logs. - Ingestion points: Reads collection data and
system.profilelogs inscripts/db_performance_check.py. - Boundary markers: Results are output as plain text or JSON without explicit sanitization markers.
- Capability inventory: Uses
subprocessfor backups and has full database write access through migrations. - Sanitization: No specific sanitization of database content is performed before generating reports.
- [DYNAMIC_EXECUTION]: The
scripts/db_migrate.pyscript loads and executes SQL commands and MongoDB operations from JSON migration files stored in the localmigrations/directory. This is intended behavior for a database migration utility.
Audit Metadata