citedy-warm-lead
Pass
Audited by Gen Agent Trust Hub on Jun 9, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: Communicates with the vendor's official domain (citedy.com) for agent registration and data processing. These operations are essential for the skill's intended functionality and target the author's verified infrastructure.
- [COMMAND_EXECUTION]: Provides instructions for using standard CLI tools like curl and a provided Node.js script (scripts/register.mjs) to interact with the Citedy API.
- [CREDENTIALS_UNSAFE]: Authentication is managed via a dedicated environment variable (CITEDY_API_KEY). The skill instructions guide the user to obtain and store this key securely without hardcoding sensitive values.
- [PROMPT_INJECTION]: Processes user-supplied company domains to generate reports. While this represents an ingestion point for external data, the skill includes instructions for the agent to verify information against evidence and avoid inventing unsupported claims.
Audit Metadata