spice-data-connector

Pass

Audited by Gen Agent Trust Hub on Feb 18, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • NO_CODE (SAFE): The skill consists entirely of Markdown documentation and YAML configuration examples. No executable scripts (Python, JavaScript, etc.) or binaries are included in the skill definition.
  • Data Ingestion Surface (SAFE): Although the skill describes how to connect to various external data sources such as SQL databases, S3, and local files, it provides only the configuration schema. It does not implement any logic for handling, processing, or responding to potentially untrusted data that could lead to indirect prompt injection.
  • External Links (SAFE): All included links point to official documentation at spiceai.org, which is consistent with the skill's stated purpose of facilitating data connectivity.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 18, 2026, 06:37 AM