onetrust
Pass
Audited by Gen Agent Trust Hub on Apr 21, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: Recommends the installation of the
@membranehq/clitool from the official NPM registry, which is a resource provided by the skill's author to facilitate secure integration.\n- [COMMAND_EXECUTION]: The skill uses local shell commands via themembraneCLI to manage connections, authenticate sessions, and execute API actions.\n- [PROMPT_INJECTION]:\n - Ingestion points: Retrieves data from external OneTrust API endpoints through CLI commands (
membrane action run,membrane request).\n - Boundary markers: The instructions do not specify the use of delimiters or 'ignore' instructions for data fetched from the API.\n
- Capability inventory: The skill uses the
membraneCLI to perform network operations and system interactions.\n - Sanitization: No specific sanitization or validation of the data retrieved from OneTrust is defined in the provided documentation.
Audit Metadata