Back to plugin

Security audit

MySQL AIops

Security checks for vulnerabilities and agentic risk

Overview

This skill transparently provides MySQL/MariaDB admin tooling with database write capability, so it should be installed only with carefully scoped database credentials.

Use a least-privilege or read-only database account until you intentionally want remediation writes, review any dry-run output before allowing destructive actions, and treat the MYSQL_AIOPS_MASTER_PASSWORD environment variable as sensitive. Some operations are irreversible even though they are audited.

SkillSpector was not run because this plugin release contains no bundled skills.

Static analysis

Detected: suspicious.prompt_injection_instructions

Prompt-injection style instruction pattern detected.

Warn
Code
suspicious.prompt_injection_instructions
Location
skills/mysql-aiops/references/agent-guardrails.md:30
Evidence
Copy this into your agent's system prompt: