Back to skill

Security audit

neon-postgres-branches

Security checks across malware telemetry and agentic risk

Overview

This skill is a coherent Neon database-branching guide with disclosed, user-directed branch and local environment update actions.

Before using it, confirm the Neon project, parent branch, branch type, and expiration date. Treat connection strings as secrets, and only allow the optional `.env` update after checking the exact file and key to be changed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Context-Inappropriate Capability

Medium
Confidence
88% confidence
Finding
The skill instructs the agent to offer writing a new branch connection string into a local `.env` file. Even with a confirmation check, this expands the skill from branch guidance into modifying local credentials/configuration, which can cause unintended secret overwrites, misrouting applications to the wrong database, or persistence of sensitive connection details in files the user did not intend to change. In this context, the danger is elevated because database connection strings are sensitive and directly affect where application writes occur.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.