hubspot-whoami-nango
Pass
Audited by Gen Agent Trust Hub on Feb 16, 2026
Risk Level: LOW
Full Analysis
- [Prompt Injection] (SAFE): The skill's instructions are purely functional and do not attempt to manipulate the AI's behavior or bypass safety constraints.
- [Data Exposure & Exfiltration] (SAFE): Identity retrieval is the intended purpose; no unauthorized file access or external network calls are present.
- [Indirect Prompt Injection] (SAFE): The skill has a minimal attack surface as it only displays data from the HubSpot API and does not use it to drive further tool execution or decisions.
- [Unverifiable Dependencies] (SAFE): The skill relies on a standard MCP server architecture and does not install or run external scripts.
Audit Metadata