emailoctopus-automation
Pass
Audited by Gen Agent Trust Hub on Mar 29, 2026
Risk Level: SAFEPROMPT_INJECTIONEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface. It retrieves and processes data from the Emailoctopus API and has the capability to execute further actions based on that data.
- Ingestion points: Data returned from the Emailoctopus API via the Rube MCP tools (SKILL.md).
- Boundary markers: There are no instructions to use delimiters or ignore potentially malicious content within the API responses.
- Capability inventory: The skill utilizes
RUBE_MULTI_EXECUTE_TOOLandRUBE_REMOTE_WORKBENCHfor executing tasks (SKILL.md). - Sanitization: The instructions do not include steps for validating or sanitizing the content received from the external API.
- [EXTERNAL_DOWNLOADS]: The skill requires the configuration of an external MCP server at
https://rube.app/mcpto provide its core functionality. - [COMMAND_EXECUTION]: The skill uses
RUBE_MULTI_EXECUTE_TOOLandRUBE_REMOTE_WORKBENCHto perform automated actions and manage remote workflows on the Emailoctopus platform.
Audit Metadata