Install
$ agentstack add skill-assapir-agent-skills-db-query ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
DB Query
Run read-only SQL queries against the Balance prod or sandbox PostgreSQL database. Credentials are fetched automatically from HashiCorp Vault using the GITHUB_TOKEN env var.
Usage
bash /Users/asapir/.claude/skills/db-query/scripts/db_query.sh ""
Rules
- Default to sandbox unless the user explicitly says "prod" or "production"
- Before querying prod, warn the user and confirm they want prod
- Only run SELECT queries (credentials are read-only)
- For schema discovery, query
information_schema.tablesandinformation_schema.columns - Present results in a clean, readable format (use markdown tables for small result sets)
- For large result sets, summarize key findings rather than dumping raw output
Examples
# List tables
bash /Users/asapir/.claude/skills/db-query/scripts/db_query.sh sandbox "SELECT table_name FROM information_schema.tables WHERE table_schema='public' ORDER BY table_name"
# Describe a table
bash /Users/asapir/.claude/skills/db-query/scripts/db_query.sh sandbox "SELECT column_name, data_type, is_nullable FROM information_schema.columns WHERE table_name='orders' ORDER BY ordinal_position"
# Query data
bash /Users/asapir/.claude/skills/db-query/scripts/db_query.sh sandbox "SELECT id, status, created_at FROM orders WHERE buyer_id = '123' ORDER BY created_at DESC LIMIT 10"
Troubleshooting
- "GITHUB_TOKEN not set": The env var must be exported in the shell
- "vault CLI not found": The script auto-installs via
brew install vault - Permission denied on Vault: The GitHub token may lack access to the requested environment
- Connection timeout: Check network/VPN connectivity to AWS RDS
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: assapir
- Source: assapir/agent-skills
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.