email-deliverability-debugger
Pass
Audited by Gen Agent Trust Hub on Mar 13, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill uses
digandgrepin shell commands to perform DNS lookups for SPF, DKIM, and DMARC verification. This behavior is intrinsic to the tool's primary purpose. - [EXTERNAL_DOWNLOADS]: It communicates with well-known security services including Spamhaus, Barracuda, and SpamCop to check IP reputation. These are trusted external entities within the email security industry.
- [PROMPT_INJECTION]: The skill ingests untrusted user data such as domain names and email headers (Categories 8a, 8c). While it lacks explicit sanitization or boundary markers, the resulting analysis is confined to structured technical reporting, minimizing the potential impact of indirect injection.
Audit Metadata