postgresql-development-cloudbase

Pass

Audited by Gen Agent Trust Hub on Sep 27, 2026

Risk Level: SAFECOMMAND_EXECUTIONDYNAMIC_EXECUTIONEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references official documentation and API endpoints hosted on cloudbase.net and tcloudbasegateway.com. These resources are used for retrieving OpenAPI specifications and making authenticated REST API calls to the vendor's infrastructure.
  • [COMMAND_EXECUTION]: The instructions include usage of the CloudBase CLI (tcb) for environment creation and database migrations. These commands are standard administrative operations within the developer's local workspace.
  • [DYNAMIC_EXECUTION]: The skill provides patterns for executing dynamic SQL statements using the PostgreSQL DO $$ BEGIN EXECUTE ... END $$ construct. This is recommended as a specific troubleshooting measure for DDL operations performed via management APIs.
  • [INDIRECT_PROMPT_INJECTION]: The skill interacts with external database schemas and migration files. While these represent potential ingestion points for untrusted data, the skill follows development best practices by favoring structured migrations over direct execution and provides specific SQL templates for secure identity management using official auth.* helpers.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 27, 2026, 09:21 AM
Security Audit — agent-trust-hub — postgresql-development-cloudbase