neon-postgres
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFENO_CODE
Full Analysis
- Prompt Injection (SAFE): No instructions found that attempt to override agent safety guidelines or system prompts.
- Data Exposure & Exfiltration (SAFE): No credentials, sensitive file paths, or network exfiltration patterns identified. The connections strings mentioned (DATABASE_URL, DIRECT_URL) are placeholders for documentation purposes.
- External Downloads & RCE (SAFE): The skill does not download external scripts or execute remote code. It mentions database drivers (neon-http, neon-serverless) but does not provide commands to install or execute them.
- Command Execution (SAFE): No system-level commands, privilege escalation, or persistence mechanisms are present.
- Metadata Poisoning (SAFE): Metadata fields are consistent with the content of the documentation.
Audit Metadata