Skip to main content

sales-tomba

Assists users with Tomba.io for email finding, verification, enrichment, and API integrations to streamline sales processes.

Install this skill

or
64/100

Security score

The sales-tomba skill was audited on Mar 29, 2026 and we found 8 security issues across 2 threat categories. Review the findings below before installing.

Categories Tested

Security Issues

medium line 59

Webhook reference - potential data exfiltration

SourceSKILL.md
59- Connecting tools via Zapier/webhooks → `/sales-integration`
medium line 113

Webhook reference - potential data exfiltration

SourceSKILL.md
113- **Async processing**: Bulk jobs run in background. Use `webhook_url` parameter to get notified when complete.
medium line 114

Webhook reference - potential data exfiltration

SourceSKILL.md
114- **Best practices**: Verify your input list format before bulk upload. Use webhook callbacks instead of polling for completion. Start with a small test batch (50-100) to validate results before proce
medium line 191

Webhook reference - potential data exfiltration

SourceSKILL.md
191| Pro | $189 | 20,000 | 40,000 | Webhooks, full domain search results, downloads |
medium line 239

Webhook reference - potential data exfiltration

SourceSKILL.md
239- **Don't forget about webhook callbacks for bulk jobs.** Bulk operations are asynchronous — the API returns immediately but processing continues in background. Use the `webhook_url` parameter to get
medium line 240

Webhook reference - potential data exfiltration

SourceSKILL.md
240- **Don't assume all plans include the same features.** Webhooks require Pro plan or above. Full domain search result downloads are plan-gated. Check your plan's limits before building workflows that
medium line 267

Webhook reference - potential data exfiltration

SourceSKILL.md
2672. Recommends using webhook callback for async completion notification
low line 160

External URL reference

SourceSKILL.md
160**Base URL**: `https://api.tomba.io/v1/`
Scanned on Mar 29, 2026
View Security Dashboard
Installation guide →