data-enrichment
Pass
Audited by Gen Agent Trust Hub on Aug 27, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes information retrieved from external APIs (Apollo, LinkedIn, Akta, Strale) which represents an attack surface for indirect prompt injection.\n- Ingestion points: Results returned from the
sandbase_call_toolfunction as seen in the workflow of SKILL.md.\n- Boundary markers: The skill does not explicitly instruct the agent to use specific delimiters or ignore embedded instructions within the fetched data.\n- Capability inventory: Usessandbase_call_toolto interact with multiple external data providers for enrichment and lookup tasks.\n- Sanitization: No explicit sanitization or validation of the enrichment data is mentioned in the instructions.
Audit Metadata