customer-follow-up-tracker
Fail
Audited by Gen Agent Trust Hub on Aug 4, 2026
Risk Level: CRITICALPROMPT_INJECTIONNO_CODE
Full Analysis
- [PROMPT_INJECTION]: The author domain 'Builder.org' listed in the skill metadata is identified as a blacklisted/malicious URL by external security scanners, indicating a potential untrusted source for the skill's instructions.
- [PROMPT_INJECTION]: The skill is vulnerable to indirect prompt injection because it ingests untrusted data from HubSpot records without adequate boundary markers or sanitization. Ingestion points: HubSpot tasks, deals, and contact details (SKILL.md); Boundary markers: Absent; Capability inventory: None (the skill is described as read-only and contains no script files); Sanitization: None detected.
- [NO_CODE]: No executable scripts, command-line operations, or remote code patterns were detected in the skill definition.
Recommendations
- Contains 1 malicious URL(s) - DO NOT USE
Audit Metadata