contact-hunter-skill
Pass
Audited by Gen Agent Trust Hub on Mar 22, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: Indirect prompt injection risk identified. 1. Ingestion points: Targeted company websites and search engine results (SKILL.md). 2. Boundary markers: Absent. 3. Capability inventory: File-system write operations (SKILL.md). 4. Sanitization: Absent.
- [COMMAND_EXECUTION]: The skill instructs the agent to write session metrics to a JSON file at
~/.claude/skill-analytics/. This involves local filesystem write operations to log activity data.
Audit Metadata