data-masker

Pass

Audited by Gen Agent Trust Hub on Mar 4, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill processes external SQL schemas and database samples which presents an indirect prompt injection surface.
  • Ingestion points: The skill ingests .sql files, DDL definitions, and database data samples as described in SKILL.md.
  • Boundary markers: Lacks explicit delimiters or instructions to ignore embedded prompts within processed data.
  • Capability inventory: Generates executable SQL code and writes report files to the docs/database-report/ directory.
  • Sanitization: No input validation or sanitization of schema metadata is defined.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 4, 2026, 02:21 PM