sales-clearbit
Warn
Audited by Snyk on Apr 20, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).
- Third-party content exposure detected (high risk: 0.80). The skill explicitly instructs the agent to call Clearbit APIs (person/company/Reveal/Prospector endpoints documented in references/platform-guide.md and clearbit-api-reference.md) which fetch public, user-generated third-party content (bios, social profiles, company descriptions, etc.) and then use that data to pre-fill forms, trigger Slack/CRM alerts, map fields, and drive outreach—meaning untrusted content is ingested and can materially influence actions.
Issues (1)
W011
MEDIUMThird-party content exposure detected (indirect prompt injection risk).
Audit Metadata