lakebase-provisioned

Pass

Audited by Gen Agent Trust Hub on Feb 19, 2026

Risk Level: SAFE
Full Analysis
  • [CREDENTIALS_UNSAFE] (SAFE): The skill utilizes short-lived OAuth tokens (1-hour expiry) generated via the Databricks SDK. No hardcoded passwords or sensitive secrets were found.\n- [COMMAND_EXECUTION] (SAFE): A utility function in connection-patterns.md uses subprocess.run to call the system dig command for DNS resolution. This is implemented securely using a list of arguments to prevent shell injection.\n- [DATA_EXFILTRATION] (SAFE): Data transfer is limited to standard PostgreSQL connections and Databricks API interactions consistent with the skill's purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 19, 2026, 07:26 PM