apollo-company-research
Pass
Audited by Gen Agent Trust Hub on Aug 27, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes data from external sources such as Apollo company records and news searches, which may contain untrusted instructions.
- Ingestion points: Untrusted data enters the agent context via the results of
apollo_company_enrich,apollo_company_record, andapollo_company_news_search(SKILL.md). - Boundary markers: The instructions do not specify the use of delimiters or clear separation markers when handling the retrieved data to prevent the agent from accidentally executing embedded instructions.
- Capability inventory: The skill utilizes
sandbase_call_toolto interact with external APIs, which provides the capability to fetch diverse text content. - Sanitization: There are no instructions for sanitizing or filtering the external content before the agent processes and synthesizes it.
- [NO_CODE]: The skill consists entirely of markdown documentation and instructions, with no accompanying scripts or executable files.
Audit Metadata