spice-data-connector

Pass

Audited by Gen Agent Trust Hub on Apr 8, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides legitimate documentation and YAML configuration examples for the Spice data connector, focusing on its primary purpose of data source integration.
  • [SAFE]: Secret management guidance follows security best practices by using environment variable and secret store placeholders (e.g., ${secrets:GITHUB_TOKEN}) rather than hardcoded credentials.
  • [SAFE]: All external links point to the official documentation at spiceai.org, which is the domain of the skill author.
  • [SAFE]: No malicious patterns, such as prompt injection, obfuscation, or unauthorized remote code execution, were identified in the skill body or evaluation files.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 8, 2026, 02:14 AM