netsuite

Pass

Audited by Gen Agent Trust Hub on Apr 22, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Recommends the installation of the @membranehq/cli package from the NPM registry to enable interaction with the Membrane platform.\n- [COMMAND_EXECUTION]: Utilizes the membrane command-line utility for managing connections, querying action schemas, and executing requests against the NetSuite API.\n- [PROMPT_INJECTION]: Identifies a surface for indirect prompt injection common to skills processing external business records.\n
  • Ingestion points: Data retrieved from NetSuite via list/get actions and proxy requests (SKILL.md).\n
  • Boundary markers: Absent; the agent processes retrieved record content directly.\n
  • Capability inventory: Shell execution via the membrane CLI (SKILL.md).\n
  • Sanitization: Not present; the skill assumes the integrity of the data stored within the connected NetSuite account.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 22, 2026, 06:47 PM