fullcontact

Pass

Audited by Gen Agent Trust Hub on Apr 21, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Instructions specify installing the @membranehq/cli package via NPM to facilitate interaction with the platform.
  • [COMMAND_EXECUTION]: Uses the membrane CLI to perform authentication, connection setup, action discovery, and API requests.
  • [PROMPT_INJECTION]: The skill processes profile enrichment data from the FullContact API which could contain malicious instructions. * Ingestion points: API responses from actions like enrich-person and enrich-company. * Boundary markers: None specified in the instructions to delimit external data. * Capability inventory: Ability to execute membrane CLI subprocesses and perform network requests. * Sanitization: No explicit instructions for sanitizing or validating API-returned content before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 21, 2026, 11:19 PM