google-cloud-healthcare-api

Pass

Audited by Gen Agent Trust Hub on Apr 25, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Recommends installing the @membranehq/cli npm package. This is a recognized vendor resource used to manage API connections and authentication.\n- [COMMAND_EXECUTION]: Uses the membrane CLI to perform administrative and data tasks such as logging in, creating connections, and executing API actions. These operations are restricted to the intended purpose of the skill.\n- [PROMPT_INJECTION]: The skill ingests healthcare data from Google Cloud, which is a potential surface for indirect prompt injection.\n
  • Ingestion points: Data enters the agent's context through the output of membrane action run and membrane request commands.\n
  • Boundary markers: No specific boundary markers or instructions to ignore embedded commands are included in the prompt templates.\n
  • Capability inventory: The skill has the capability to execute shell commands via the membrane CLI and perform network requests through the Membrane proxy.\n
  • Sanitization: The skill does not implement custom sanitization for the data returned from the Healthcare API before processing it.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 25, 2026, 12:50 AM