Deal Reengagement Intervention
Pass
Audited by Gen Agent Trust Hub on Mar 3, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection as it processes untrusted data from external sources. 1. Ingestion points: Data is gathered from communication_events (emails, LinkedIn messages) and meeting_history (notes, topics) via CRM actions. 2. Boundary markers: The prompt does not specify delimiters or instructions to ignore potential commands embedded in the ingested communication text. 3. Capability inventory: The skill has read access to CRM data and generates personalized outreach messages and strategies. 4. Sanitization: No specific sanitization or filtering of external content is described before the data is used to generate the final output.
Audit Metadata