spice-data-connector
Pass
Audited by Gen Agent Trust Hub on Apr 8, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides legitimate documentation and YAML configuration examples for the Spice data connector, focusing on its primary purpose of data source integration.
- [SAFE]: Secret management guidance follows security best practices by using environment variable and secret store placeholders (e.g., ${secrets:GITHUB_TOKEN}) rather than hardcoded credentials.
- [SAFE]: All external links point to the official documentation at spiceai.org, which is the domain of the skill author.
- [SAFE]: No malicious patterns, such as prompt injection, obfuscation, or unauthorized remote code execution, were identified in the skill body or evaluation files.
Audit Metadata