dnsimple

Pass

Audited by Gen Agent Trust Hub on Apr 21, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill requires the installation of the @membranehq/cli package via npm, which is the official tool provided by the vendor for platform integration.
  • [COMMAND_EXECUTION]: The agent is instructed to use various membrane CLI commands to search for connectors, manage connections, and execute actions on the DNSimple platform.
  • [DATA_EXFILTRATION]: The skill uses a proxy service (getmembrane.com) to handle API requests. This is a vendor-owned resource used for secure credential management and does not constitute unauthorized exfiltration.
  • [PROMPT_INJECTION]: The skill processes external data from the DNSimple API and provides a surface for capability execution via CLI commands. Ingestion points: Output from membrane action run and membrane request commands. Boundary markers: Not specified in the instructions. Capability inventory: Shell command execution via the membrane tool for DNS management and API proxying. Sanitization: Not explicitly implemented in the skill instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 21, 2026, 04:11 PM