data-masker
Pass
Audited by Gen Agent Trust Hub on Mar 4, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill processes external SQL schemas and database samples which presents an indirect prompt injection surface.
- Ingestion points: The skill ingests .sql files, DDL definitions, and database data samples as described in SKILL.md.
- Boundary markers: Lacks explicit delimiters or instructions to ignore embedded prompts within processed data.
- Capability inventory: Generates executable SQL code and writes report files to the docs/database-report/ directory.
- Sanitization: No input validation or sanitization of schema metadata is defined.
Audit Metadata