sinch-mailgun-inspect
Pass
Audited by Gen Agent Trust Hub on Sep 29, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied HTML and link arrays for email quality analysis, constituting a potential attack surface. However, the skill provides specific mitigations. \n
- Ingestion points: Ingestion occurs via the
htmlfield in accessibility, code analysis, and HTML validation endpoints, as well as thelinksURL array in link and image validation tasks. \n - Boundary markers: The agent is instructed to establish clear scope and configuration parameters (input method, region, language) before data processing. \n
- Capability inventory: The skill uses
curlfor network requests to theapi.mailgun.netandapi.eu.mailgun.netAPI endpoints. \n - Sanitization: The 'Security' section provides explicit instructions to sanitize user-supplied content before submission to prevent malicious payloads. \n- [EXTERNAL_DOWNLOADS]: The skill instructs the agent to fetch authoritative documentation from trusted vendor domains. \n
- Evidence: References to
documentation.mailgun.comanddevelopers.sinch.comare used for verifying API schemas and enums. \n- [COMMAND_EXECUTION]: The instructions provide canonical patterns for interacting with the REST API using shell tools. \n - Evidence: Examples include the use of
curlfor POST and GET requests andjqfor parsing JSON responses. \n- [SAFE]: The skill implements strong security practices for credential handling. \n - Evidence: The skill explicitly advises against hardcoding API keys and recommends the use of environment variables or secret managers for the
MAILGUN_API_KEY.
Audit Metadata