Follow Up Boss

Security checks across malware telemetry and agentic risk

Overview

This appears to be a real Follow Up Boss CRM integration, but it needs review because it enables CRM record changes and deletions without documented confirmation safeguards.

Install only if you trust Membrane and intend to let an agent access your Follow Up Boss account. Use the least-privileged connection available, require explicit approval before creating, updating, or deleting records, verify exact record IDs before deletion, and revoke the connection when no longer needed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill explicitly documents delete-person, delete-deal, and delete-task operations but provides no guidance to require confirmation, verify target identity, or warn about irreversible effects. In an agent-driven workflow, this increases the chance of accidental or overly broad destructive actions that could remove CRM records without adequate user intent verification.

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal