onfleet

Pass

Audited by Gen Agent Trust Hub on Mar 23, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the Membrane CLI via '@membranehq/cli' from the NPM registry. This is a standard tool provided by the vendor for interacting with their service.
  • [COMMAND_EXECUTION]: The skill uses various 'membrane' commands to manage connections, search for actions, and execute delivery management tasks on Onfleet. These operations are performed through the vendor's managed infrastructure.
  • [REMOTE_CODE_EXECUTION]: The skill mentions the use of 'npx' to run the Membrane CLI directly, which fetches and executes the latest version of the tool from the NPM registry.
  • [DATA_EXFILTRATION]: The skill includes a 'membrane request' feature that proxies HTTP requests to the Onfleet API. This is used to extend functionality when pre-built actions are insufficient, with authentication handled securely by the Membrane platform.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 23, 2026, 03:39 AM