real-estate-crm-pipeline-orchestrator
Pass
Audited by Gen Agent Trust Hub on Apr 7, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security threats or malicious patterns were detected in the skill definition or scripts.
- [COMMAND_EXECUTION]: The 'scripts/run.sh' file is a standard utility used to launch the skill via a local Python runner. It does not perform any sensitive or unauthorized system operations.
- [PROMPT_INJECTION]: The skill defines a surface for indirect prompt injection by processing external lead data from sources like social media and real estate portals. However, the agent's capabilities are restricted to communication and data management tasks, and the prompt does not contain instructions to bypass safety guidelines.
- [DATA_EXFILTRATION]: The skill manages PII (Personally Identifiable Information) consistent with its role as a CRM tool. No suspicious network operations or hardcoded credentials were identified.
Audit Metadata