Back to skill

Security audit

CRM analysis with OutboundSync

Security checks for vulnerabilities and agentic risk

Overview

This skill is a read-only CRM analysis guide, with the main caution that CRM email and message fields may contain sensitive personal data.

Install only for users who are allowed to view the relevant CRM data. Before using analyses that include email or social message contents, confirm CRM permissions, retention rules, and any consent or privacy obligations; prefer aggregate engagement fields when full message bodies are not needed.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
95% confidence
Finding
This markdown file documents fields that store full email and reply message bodies, sender details, and related engagement data in Salesforce. Under the markdown-specific missing-warning rule, the description should warn that syncing message content into CRM may affect user data privacy and retention, but no such warning appears.

Static analysis

No suspicious patterns detected.