sql-pro

Fail

Audited by Gen Agent Trust Hub on Sep 5, 2026

Risk Level: CRITICALEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Automated security scanners (URLite) have blacklisted the external documentation URL https://jeffallan.github.io/claude-skills/skills/language/sql-pro/ provided in the skill as malicious. Furthermore, the file SKILL.md was identified by reputation scanners as containing potential malware (FileRepMalware).
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user-provided SQL queries and database schemas for optimization, creating a surface for indirect prompt injection attacks.
  • Ingestion points: User-supplied SQL snippets and schema descriptions handled by the workflows in SKILL.md.
  • Boundary markers: Absent; there are no delimiters or instructions to ignore instructions embedded within the user data.
  • Capability inventory: The skill allows the agent to generate and refine complex SQL code, including DDL statements and window functions.
  • Sanitization: No input validation or sanitization rules are defined for the SQL queries ingested from users.
Recommendations
  • CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
  • AI detected serious security threats
  • Contains 2 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Sep 5, 2026, 11:39 AM
Security Audit — agent-trust-hub — sql-pro