drizzle-migration-conflict

Pass

Audited by Gen Agent Trust Hub on Jul 9, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes local shell commands including git, python3, and rg to inspect the repository state and migration history. It specifically executes a bundled Python helper script (scripts/check_drizzle_migrations.py) which is designed to be read-only and structurally oriented, avoiding any direct database connections or destructive file operations unless explicitly confirmed by the user.
  • [DATA_EXFILTRATION]: The instructions include robust safety rules requiring the agent to redact sensitive information such as database URLs, passwords, and tokens from any generated reports. It explicitly warns against echoing secrets found in environment variables or configuration files.
  • [EXTERNAL_DOWNLOADS]: The skill references official Drizzle documentation, GitHub discussions, and community Gists for informational purposes. These resources are from well-known and reputable sources in the technology community and do not involve the automated downloading or execution of untrusted scripts.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 9, 2026, 05:03 PM
Security Audit — agent-trust-hub — drizzle-migration-conflict