Skip to main content

sales-tomba

Assists users with Tomba.io for email finding, verification, enrichment, and API integrations to streamline sales processes.

Install this skill

or
80/100

Security score

The sales-tomba skill was audited on May 12, 2026 and we found 4 security issues across 1 threat category. Review the findings below before installing.

Categories Tested

Security Issues

medium line 61

Webhook reference - potential data exfiltration

SourceSKILL.md
61- Connecting tools via Zapier/webhooks → `/sales-integration`
medium line 114

Webhook reference - potential data exfiltration

SourceSKILL.md
114- **Don't forget about webhook callbacks for bulk jobs.** Bulk operations are asynchronous — the API returns immediately but processing continues in background. Use the `webhook_url` parameter to get
medium line 115

Webhook reference - potential data exfiltration

SourceSKILL.md
115- **Don't assume all plans include the same features.** Webhooks require Pro plan or above. Full domain search result downloads are plan-gated. Check your plan's limits before building workflows that
medium line 144

Webhook reference - potential data exfiltration

SourceSKILL.md
1442. Recommends using webhook callback for async completion notification
Scanned on May 12, 2026
View Security Dashboard
Installation guide →