pipeliner

Pass

Audited by Gen Agent Trust Hub on Mar 11, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The sk i l l u s e s t h e m e m b r a n e C L I t o p e r f o r m C R M o p e r a t i o n s , a u t h e n t i c a t i o n , a n d A P I r e q u e s t s .
  • [EXTERNAL_DOWNLOADS]: In s t r u c t s t h e u s e r t o d o w n l o a d t h e @m e m b r a n e h q / c l i p a c k a g e f r o m n p m , w h i c h i s t h e o f f i c i a l t o o l f o r t h e s e r v i c e .
  • [PROMPT_INJECTION]: Th e s k i l l i s s u s c e p t i b l e t o i n d i r e c t p r o m p t i n j e c t i o n a s i t r e t r i e v e s a n d p r o c e s s e s f r e e
  • t e x t d a t a f r o m C R M r e c o r d s l i k e n o t e s a n d d e s c r i p t i o n s .
  • In g e s t i o n p o i n t s : R e c o r d s f e t c h e d v i a `l i s t
  • n o t e s a n d g e t
  • l e a d `.
  • Bo u n d a r y m a r k e r s : N o n e e x p l i c i t l y d e f i n e d i n t h e C L I c o m m a n d e x a m p l e s .
  • Ca p a b i l i t y i n v e n t o r y : In c l u d e s t h e a b i l i t y t o c r e a t e a n d u p d a t e r e c o r d s v i a m e m b r a n e a c t i o n r u n a n d a r b i t r a r y A P I r e q u e s t s v i a m e m b r a n e r e q u e s t .
  • Sa n i t i z a t i o n : N o e x p l i c i t s a n i t i z a t i o n o r f i l t e r i n g o f r e t r i e v e d c o n t e n t i s m e n t i o n e d .
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 11, 2026, 12:47 PM