n8n
Pass
Audited by Gen Agent Trust Hub on Feb 21, 2026
Risk Level: SAFE
Full Analysis
- [SAFE] (SAFE): No malicious patterns or security risks were identified across the 10 analyzed files. The instructions, templates, and resource guides are consistent with professional automation consultancy and follow industry-standard practices for self-hosting and CRM integration.
- [Indirect Prompt Injection Surface] (SAFE): The skill describes systems that ingest external data via webhooks and perform network/code operations. While this presents an attack surface in the resulting workflows, the skill itself is a safe instructional resource. Ingestion points: Webhook trigger nodes described in triggers-webhooks/SKILL.md and clay-n8n-integration.md; Boundary markers: Absent from provided templates; Capability inventory: HTTP Request nodes and Code nodes (JS/TS) for data processing and network calls; Sanitization: Not explicitly addressed in the workflow logic.
Audit Metadata