supabase-postgres-best-practices
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOW
Full Analysis
- [Indirect Prompt Injection] (SAFE): The skill provides guidelines for the agent to use when reviewing SQL queries, but the skill itself is static documentation and contains no data ingestion or execution capabilities.
- [Remote Code Execution] (SAFE): No remote scripts, external package references, or remote code execution patterns were detected.
- [Command Execution] (SAFE): The file contains no shell commands, subprocess calls, or scripts.
- [Metadata Poisoning] (SAFE): Metadata is accurate and consistent with the skill's content; the author 'supabase' is a recognized trusted organization.
Audit Metadata