attio-rate-limits
Pass
Audited by Gen Agent Trust Hub on Sep 10, 2026
Risk Level: SAFE
Full Analysis
- [DATA_EXFILTRATION]: The skill includes explicit security instructions to protect authentication tokens, requiring the partitioning of state by workspace credential and forbidding the exposure of Bearer tokens in rate-limit telemetry or telemetry logs.
- [EXTERNAL_DOWNLOADS]: The skill references and uses WebFetch to access official documentation from Attio's well-known and authoritative documentation domain (docs.attio.com) to verify current service limits and request semantics.
- [INDIRECT_PROMPT_INJECTION]: The skill has an attack surface where it ingests external service documentation and internal request metrics. The risk is managed by targeting authoritative documentation and requiring human verification and a defined rollback plan before the implementation of any design changes.
Audit Metadata