duckdb-en
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: LOWCOMMAND_EXECUTION
Full Analysis
- [In d ir e c t Prom p t In je c t ion] (LOW): The skill pos s e s s e s a dat a in ge s t ion sur fa c e tha t coul d be ex p l o it e d if mal ic iou s con t e n t is proce s s e d.
- In g e s t ion poin t s: File re a d in g op e r a t ion s in
SKILL.m dusin gre a d_c s v,re a d_p a r q ue t, an dre a d_j s o n_a u t o. - Boun d a r y ma r k e r s: No in s t r uc t ion s a r e provid e d to de l im it ex t e r n a l dat a or ig n o r e em b e d d e d com m a n d s.
- Ca p a b il it y in v e n t o r y: Sh e l l com m a n d ex e c u t ion via
duc kd bas docume n t e d th r o u g h ou tSKILL.m d. - Sa n it iz a t ion: No ev id e n c e of dat a sa n it iz a t ion or va l id a t ion of ex t e r n a l fil e con t e n t is de s c r ib e d.
- [Prom p t In je c t ion] (SAFE): No ma l ic iou s ov e r r id e in s t r uc t ion s or sa fe t y by p a s s e s de t e c t e d.
- [Da t a Ex p o s u r e & Ex f il t r a t ion] (SAFE): No ha r d cod e d cr e d e n t ia l s or n e t wo r k ex f il t r a t ion pa t t e r n s id e n t if ie d.
- [Ob f us c a t ion] (SAFE): Co n t e n t is t r a n s p a r e n t a n d us e s s t a n d a r d en c od in g.
- [Re m o t e Cod e Ex e c u t ion] (SAFE): No ex t e r n a l dow n l o a d s or pip e d re m o t e s c r ip t ex e c u t ion s.
Audit Metadata