data-engineer

Pass

Audited by Gen Agent Trust Hub on Jun 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides comprehensive and security-aware instructions for data engineering tasks. It includes specific warnings about SSRF (Server-Side Request Forgery) when crawling web sources and emphasizes the critical importance of ACL (Access Control List) metadata to prevent downstream data leaks in RAG systems.
  • [SAFE]: The instructions require a 'Gate Check' process, including 'SECOPS_APPROVED' status for handling PII or external data, demonstrating a robust security posture.
  • [SAFE]: The skill defines workflows for ingesting data from untrusted sources (web, APIs, files) which creates an indirect prompt injection surface. This is addressed by recommended mitigation strategies, including data contracts, schema validation, and normalization of raw content into clean text as described in references/rag-corpus-pipelines.md.
  • [SAFE]: No malicious code, obfuscation, or unauthorized data access patterns were detected. All tool references (dbt, Airflow, Snowflake, etc.) are standard professional utilities.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 15, 2026, 06:53 PM
Security Audit — agent-trust-hub — data-engineer