email-sequence

Pass

Audited by Gen Agent Trust Hub on Apr 20, 2026

Risk Level: SAFE
Full Analysis
  • [DATA_EXPOSURE]: The skill attempts to read context from local files like .agents/product-marketing-context.md or .claude/product-marketing-context.md. This is a standard procedure for project-aware agents to gather marketing context and does not involve accessing sensitive system credentials.
  • [EXTERNAL_DOWNLOADS]: The skill mentions and provides links to several well-known email service providers and platforms (Mailchimp, SendGrid, Customer.io, Resend, Kit). These are recognized industry services and do not represent a security risk.
  • [INDIRECT_PROMPT_INJECTION]: The skill ingests data from local context files (product-marketing-context.md) without explicit boundary markers or sanitization logic. However, as these files are typically part of the project repository, the risk is minimal in this context.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 20, 2026, 12:05 PM
Security Audit — agent-trust-hub — email-sequence