clickhouse-pydantic-config
Pass
Audited by Gen Agent Trust Hub on Sep 28, 2026
Risk Level: SAFEDATA_EXFILTRATIONCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [DATA_EXPOSURE]: The skill documentation describes searching for and reading environment configuration files such as
.envto retrieve database credentials. This is standard behavior for a configuration generation tool. - Evidence:
SKILL.mdcontains discovery commands likefd -t f ".env*" .to locate secret files. - [COMMAND_EXECUTION]: The skill utilizes shell commands for environment discovery and testing database connectivity.
- Evidence:
SKILL.mdreferences the use ofclickhouse-clientandfdfor pre-implementation discovery. - [INDIRECT_PROMPT_INJECTION]: The skill processes configuration data from the local environment and file system, which represents a surface for indirect prompt injection if the source data is attacker-controlled.
- Evidence Ingestion points:
scripts/generate_dbeaver_config.py(reads from environment variables). - Evidence Boundary markers: None explicitly defined for interpolated environment values.
- Evidence Capability inventory: The skill has the capability to write files (
scripts/generate_dbeaver_config.py) and execute bash commands. - Evidence Sanitization: The skill uses Pydantic v2 for type validation and schema enforcement in
scripts/generate_dbeaver_config.pyandscripts/validate_config.py.
Audit Metadata