sales-tomba
Assists users with Tomba.io for email finding, verification, enrichment, and API integrations to streamline sales processes.
Install this skill
or
80/100
Security score
The sales-tomba skill was audited on May 12, 2026 and we found 4 security issues across 1 threat category. Review the findings below before installing.
Categories Tested
Security Issues
medium line 61
Webhook reference - potential data exfiltration
SourceSKILL.md
| 61 | - Connecting tools via Zapier/webhooks → `/sales-integration` |
medium line 114
Webhook reference - potential data exfiltration
SourceSKILL.md
| 114 | - **Don't forget about webhook callbacks for bulk jobs.** Bulk operations are asynchronous — the API returns immediately but processing continues in background. Use the `webhook_url` parameter to get |
medium line 115
Webhook reference - potential data exfiltration
SourceSKILL.md
| 115 | - **Don't assume all plans include the same features.** Webhooks require Pro plan or above. Full domain search result downloads are plan-gated. Check your plan's limits before building workflows that |
medium line 144
Webhook reference - potential data exfiltration
SourceSKILL.md
| 144 | 2. Recommends using webhook callback for async completion notification |
Scanned on May 12, 2026
View Security Dashboard