sql-pro
Fail
Audited by Gen Agent Trust Hub on Sep 5, 2026
Risk Level: CRITICALEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: Automated security scanners (URLite) have blacklisted the external documentation URL
https://jeffallan.github.io/claude-skills/skills/language/sql-pro/provided in the skill as malicious. Furthermore, the fileSKILL.mdwas identified by reputation scanners as containing potential malware (FileRepMalware). - [INDIRECT_PROMPT_INJECTION]: The skill processes user-provided SQL queries and database schemas for optimization, creating a surface for indirect prompt injection attacks.
- Ingestion points: User-supplied SQL snippets and schema descriptions handled by the workflows in
SKILL.md. - Boundary markers: Absent; there are no delimiters or instructions to ignore instructions embedded within the user data.
- Capability inventory: The skill allows the agent to generate and refine complex SQL code, including DDL statements and window functions.
- Sanitization: No input validation or sanitization rules are defined for the SQL queries ingested from users.
Recommendations
- CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
- AI detected serious security threats
- Contains 2 malicious URL(s) - DO NOT USE
Audit Metadata