Back to skill

Security audit

Judy Marketing

Security checks for vulnerabilities and agentic risk

Overview

This appears to be a lead-enrichment and outreach skill, but it handles contact data and external communications without enough safeguards.

Review this before installing if you will use it on real people. Use a dedicated Apollo key with limited access, avoid logging or committing secrets, store exported CSVs in a controlled location, define deletion/retention rules, and require human review of recipient lists and messages before any outreach. Make sure your use complies with applicable privacy, anti-spam, opt-out, and platform rules.

Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (3)

Missing User Warnings

Medium
Confidence
88% confidence
Finding
The skill explicitly instructs collecting, enriching, and exporting personal contact data such as emails and phone numbers to CSV without any privacy, consent, retention, or lawful-use guidance. That creates a real security/privacy risk because agents may process external personal data in bulk and store it in shared or insecure locations, increasing exposure and misuse risk.

Missing User Warnings

Medium
Confidence
90% confidence
Finding
The skill promotes outbound email, LinkedIn, and phone outreach but provides no warning that these actions contact external parties and can affect reputation, trigger spam/compliance issues, or expose recipient privacy. In an agent context, this omission is dangerous because it normalizes automated external communications without checkpoints, approval, or policy constraints.

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The skill explicitly documents use of an Apollo API key and where it is stored, but provides no guidance on secret handling, least-privilege use, rotation, or privacy/compliance for enriched lead data. In a marketing skill that performs prospect enrichment, this increases the chance of credential exposure and improper processing of personal data, especially if users or downstream agents inspect shell config files or overuse the key in uncontrolled workflows.

Static analysis

No suspicious patterns detected.