clearbit
Pass
Audited by Gen Agent Trust Hub on Apr 22, 2026
Risk Level: SAFECOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [SAFE]: The skill installs the Membrane CLI, a tool provided by the vendor, to facilitate communication with the Clearbit API.
- [SAFE]: The skill follows security best practices by using centralized authentication through the Membrane platform, preventing the exposure of sensitive API keys or credentials.
- [COMMAND_EXECUTION]: The skill executes shell commands using the Membrane CLI to search for, connect to, and interact with Clearbit data.
- [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection by ingesting external data from Clearbit enriched profiles. Ingestion points: Data retrieved via 'membrane action run' and 'membrane request' as described in SKILL.md. Boundary markers: Absent. Capability inventory: Shell command execution via Membrane CLI and network access. Sanitization: Absent.
Audit Metadata