beamer

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the @membranehq/cli package via npm. This is a vendor-provided tool necessary for the skill's functionality and aligns with the author's identity.
  • [COMMAND_EXECUTION]: The integration relies on executing the membrane CLI for core tasks including authentication, connection management, and action execution. These commands are part of the intended and documented workflow.
  • [DATA_EXFILTRATION]: The skill processes data from the Beamer API (such as comments, feature requests, and posts) via the CLI. While this creates a surface for indirect prompt injection if the external data contains malicious instructions, this is an inherent risk of data processing skills. The skill directs the agent to interact with these resources using structured CLI outputs.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 03:19 PM