lead-enrichment

Warn

Audited by Snyk on Mar 6, 2026

Risk Level: MEDIUM
Full Analysis

MEDIUM W011: Third-party content exposure detected (indirect prompt injection risk).

  • Third-party content exposure detected (high risk: 1.00). The skill explicitly fetches public web and user-generated content (Apify Google Search top results, Apify LinkedIn scraper, and Apify company enrichment called in SKILL.md Step 2 and implemented in scripts/enrich_lead.py's google_search/linkedin_scrape/company_enrichment), then feeds those results into an LLM synthesis that determines lead_score, recommendations, and optional CRM write-back—meaning untrusted third-party content is read and can materially influence agent actions.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Mar 6, 2026, 05:28 PM