lindy-core-workflow-b
Pass
Audited by Gen Agent Trust Hub on Sep 9, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill's primary purpose is to configure triggers for Email, Slack, Webhooks, and Chat messages. This creates a significant surface for indirect prompt injection, as the agent is instructed to process and act upon potentially untrusted data from these external channels.
- [EXTERNAL_DOWNLOADS]: The implementation guide specifies the use of the
@lindy-ai/sdkpackage for Node.js. This is an expected dependency for a skill providing integration with the Lindy AI platform.
Audit Metadata