sql-pro

Pass

Audited by Gen Agent Trust Hub on Aug 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill serves as a comprehensive educational and reference resource for SQL developers, containing only markdown documentation and standard SQL examples for PostgreSQL, MySQL, SQL Server, and Oracle.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: No hardcoded credentials, API keys, or sensitive file paths were found. The skill does not perform any network operations to non-whitelisted domains.
  • [REMOTE_CODE_EXECUTION]: The skill does not download or execute external scripts, and no dynamic execution patterns such as eval() or exec() are present.
  • [PROMPT_INJECTION]: No instructional overrides, DAN patterns, or attempts to bypass safety filters were detected in the skill instructions or metadata.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied SQL queries and schema descriptions but does not include explicit boundary markers or sanitization instructions. However, as a documentation-focused skill that provides reference code rather than executing commands directly, this represents a standard operational surface rather than a malicious finding.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 1, 2026, 02:21 AM
Security Audit — agent-trust-hub — sql-pro