crm

Warn

Audited by Snyk on Aug 5, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (low risk: 0.10). The skill’s required runtime workflow reads HubSpot CRM data only via explicitly invoked, bounded CLI operations (e.g., contacts search/deals list/pipelines list) against first-party HubSpot APIs and does not describe passively ingesting arbitrary outsider-authored text streams without selecting a specific record/query.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 5, 2026, 09:20 PM
Issues
1
Security Audit — snyk — crm