sales-clearbit

Warn

Audited by Snyk on Apr 20, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 0.80). The skill explicitly instructs the agent to call Clearbit APIs (person/company/Reveal/Prospector endpoints documented in references/platform-guide.md and clearbit-api-reference.md) which fetch public, user-generated third-party content (bios, social profiles, company descriptions, etc.) and then use that data to pre-fill forms, trigger Slack/CRM alerts, map fields, and drive outreach—meaning untrusted content is ingested and can materially influence actions.

Issues (1)

W011
MEDIUM

Third-party content exposure detected (indirect prompt injection risk).

Audit Metadata
Risk Level
MEDIUM
Analyzed
Apr 20, 2026, 06:35 PM
Issues
1
Security Audit — snyk — sales-clearbit