lakebase-provisioned
Pass
Audited by Gen Agent Trust Hub on Feb 19, 2026
Risk Level: SAFE
Full Analysis
- [CREDENTIALS_UNSAFE] (SAFE): The skill utilizes short-lived OAuth tokens (1-hour expiry) generated via the Databricks SDK. No hardcoded passwords or sensitive secrets were found.\n- [COMMAND_EXECUTION] (SAFE): A utility function in
connection-patterns.mdusessubprocess.runto call the systemdigcommand for DNS resolution. This is implemented securely using a list of arguments to prevent shell injection.\n- [DATA_EXFILTRATION] (SAFE): Data transfer is limited to standard PostgreSQL connections and Databricks API interactions consistent with the skill's purpose.
Audit Metadata