hubspot-hardened

Pass

Audited by Gen Agent Trust Hub on Apr 21, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill exclusively communicates with the official HubSpot API domain (api.hubapi.com) using standard system utilities like curl and jq, following industry-standard integration patterns.
  • [SAFE]: Authentication is managed via a dedicated environment variable (HUBSPOT_ACCESS_TOKEN), avoiding the risk of hardcoded credentials within the skill's instructions.
  • [SAFE]: The skill contains embedded defensive guardrails that explicitly instruct the agent to maintain record integrity, minimize the exposure of Personally Identifiable Information (PII), and prevent the exfiltration of CRM data to external network commands or services.
  • [SAFE]: No evidence of obfuscation, remote code execution, persistence mechanisms, or unauthorized privilege escalation was found in the analyzed files.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 21, 2026, 06:31 PM
Security Audit — agent-trust-hub — hubspot-hardened