sales-attention
Pass
Audited by Gen Agent Trust Hub on Apr 24, 2026
Risk Level: SAFEPROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [PROMPT_INJECTION]: The skill uses 'references/learnings.md' to store and retrieve platform knowledge, creating an indirect prompt injection surface (Category 8). 1. Ingestion points: 'references/learnings.md'. 2. Boundary markers: None. 3. Capability inventory: Appending to the learnings file and routing to other skills. 4. Sanitization: None. This is a standard state-management pattern.
- [EXTERNAL_DOWNLOADS]: References the official Attention MCP server on GitHub and provides installation commands for related skills from the same author ('sales-skills'). These are legitimate components of the vendor's platform ecosystem.
- [COMMAND_EXECUTION]: Provides example cURL commands for API interaction and installation instructions for ecosystem tools. These are instructional in nature and facilitate standard setup processes.
Audit Metadata