salesloft-common-errors
Pass
Audited by Gen Agent Trust Hub on Sep 10, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADSNO_CODE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill is designed to process external API error responses which constitute untrusted data. While this creates a vulnerability surface for indirect prompt injection, the skill includes explicit instructions to redact secrets and sensitive payloads before the data is ingested by the agent.
- [EXTERNAL_DOWNLOADS]: The skill references and is instructed to fetch documentation from 'developers.salesloft.com' using the WebFetch tool. This is a well-known service provider, and the operations are restricted to retrieving official API contracts and troubleshooting guides.
- [NO_CODE]: This skill contains no executable scripts or binary files; it consists entirely of instructional markdown and metadata within the SKILL.md file.
Audit Metadata