azure-cosmos-db-py

Pass

Audited by Gen Agent Trust Hub on Mar 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill utilizes official, well-known libraries from a trusted organization (Microsoft), specifically azure-cosmos and azure-identity, for database operations and authentication.
  • [SAFE]: It promotes secure authentication practices by recommending the use of DefaultAzureCredential for production environments, which leverages Azure's Managed Identities and Role-Based Access Control (RBAC) to avoid the use of static credentials.
  • [SAFE]: The documentation includes explicit security requirements to use parameterized queries with the @parameter syntax, which is the standard defense against injection vulnerabilities in NoSQL databases.
  • [SAFE]: The architecture follows a clean separation of concerns, isolating the database client configuration and using Pydantic models for strict data validation, which reduces the risk of data corruption or schema-based attacks.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 21, 2026, 11:59 AM