salesmate
Pass
Audited by Gen Agent Trust Hub on Mar 11, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the
@membranehq/clipackage globally via NPM. This is a vendor-provided tool required for the skill to communicate with the Membrane platform. - [COMMAND_EXECUTION]: The skill extensively uses the
membraneCLI to perform operations such as authentication (membrane login), connection management (membrane connect), and data interaction (membrane action run). These are legitimate uses of the tool to facilitate the CRM integration. - [COMMAND_EXECUTION]: The
membrane requestcommand allows the agent to execute arbitrary HTTP requests against the Salesmate API. This provides the necessary flexibility for API interactions not covered by standard actions, using the platform's built-in authentication proxy.
Audit Metadata