hubspot-automation

Pass

Audited by Gen Agent Trust Hub on Jun 24, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill facilitates interaction with HubSpot CRM through a legitimate third-party MCP service (rube.app). All operations are consistent with the stated purpose of CRM automation.
  • [SAFE]: Credential management is handled securely via an OAuth flow (RUBE_MANAGE_CONNECTIONS) rather than hardcoded API keys. The instructions correctly direct users to complete authentication through official channels.
  • [SAFE]: No evidence of prompt injection, obfuscation, or malicious persistence mechanisms was found in the documentation or tool descriptions.
  • [SAFE]: While the skill ingests external data from HubSpot (Category 8 surface), it does not employ unsafe interpolation or bypass standard agent guardrails for processing that data.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 24, 2026, 12:14 AM
Security Audit — agent-trust-hub — hubspot-automation