close-automation

Pass

Audited by Gen Agent Trust Hub on Jul 18, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill requires the connection of an external MCP server located at https://rube.app/mcp. This server acts as a gateway to the Close CRM toolkit on the Composio platform.
  • [PROMPT_INJECTION]: The skill is designed to retrieve and process data from a CRM (e.g., via CLOSE_GET_NOTE or SMS logs), which presents an indirect prompt injection surface. If an attacker places malicious instructions within CRM records (leads, notes, or messages), those instructions could influence the agent when it retrieves that data. It is recommended to treat data from the CRM as untrusted and use boundary markers during processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 18, 2026, 04:24 PM
Security Audit — agent-trust-hub — close-automation