database-optimizer

Pass

Audited by Gen Agent Trust Hub on Sep 4, 2026

Risk Level: SAFENO_CODEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: No malicious instructions, obfuscation, or exfiltration patterns were detected. References to well-known cloud providers (AWS, Azure, GCP) and monitoring tools (DataDog, New Relic) are neutral and appropriate for the skill's domain.
  • [NO_CODE]: The skill is purely instructional and does not include any scripts, binary files, or command-line execution patterns.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to analyze external data such as SQL query plans and performance logs, representing a potential surface for indirect injection.
  • Ingestion points: SQL query strings, performance logs, and schema definitions.
  • Boundary markers: No delimiters or 'ignore embedded instructions' warnings are present.
  • Capability inventory: No file-write, network, or subprocess tools are included in the skill.
  • Sanitization: No validation or escaping of external inputs is defined.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 4, 2026, 03:04 PM
Security Audit — agent-trust-hub — database-optimizer