backend-database-specialist

Pass

Audited by Gen Agent Trust Hub on Sep 23, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions to download over 2,600 markdown files from the official Supabase documentation site (https://supabase.com/docs) using the docpull utility.
  • [COMMAND_EXECUTION]: Development workflows involve using standard CLI tools such as the Supabase CLI for project management and shell commands like grep and ls for searching documentation.
  • [INDIRECT_PROMPT_INJECTION]: The skill's functionality involves ingesting a large volume of external documentation, which introduces an indirect injection surface. 1. Ingestion points: docs/supabase_com/ directory. 2. Boundary markers: None specified. 3. Capability inventory: Shell command execution and file reading. 4. Sanitization: No explicit sanitization process for the downloaded content is mentioned.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 23, 2026, 05:00 PM
Security Audit — agent-trust-hub — backend-database-specialist