fastfield-mobile-forms

Pass

Audited by Gen Agent Trust Hub on Apr 23, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs the @membranehq/cli package from the NPM registry, which is the official command-line tool for the Membrane platform.- [COMMAND_EXECUTION]: Utilizes the membrane CLI to manage account connections and execute API actions, including membrane login, membrane search, and membrane action run.- [PROMPT_INJECTION]: The skill presents an indirect prompt injection surface as it processes data from the FastField API. • Ingestion points: Data returned by membrane action run and membrane request (SKILL.md). • Boundary markers: None present. • Capability inventory: Command execution via membrane and package installation via npm. • Sanitization: No explicit sanitization of external data is documented.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 23, 2026, 11:49 PM