Security audit
GoHighLevel Open Account
Security checks across malware telemetry and agentic risk
Overview
This is a non-executing GoHighLevel setup guide with expected OAuth credential handling and no evidence of hidden or harmful behavior.
Before installing, understand that this skill helps create GoHighLevel app credentials and OAuth access that may reach CRM, contact, calendar, agency, or sub-account data. Use only the scopes needed, confirm the account being connected, keep client secrets and tokens out of normal chat, screenshots, logs, and repositories, and use a direct GoHighLevel signup URL if you do not want to use the referral link.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
