aircall
Pass
Audited by Gen Agent Trust Hub on Sep 22, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill requires the installation of the @membranehq/cli package via npm. This package is the official command-line interface for the Membrane platform, which is the vendor for this skill.- [COMMAND_EXECUTION]: The skill's primary functionality is achieved by executing membrane shell commands to manage connections, list actions, and run API requests against Aircall.- [INDIRECT_PROMPT_INJECTION]: The skill interacts with the Aircall API, ingesting external data such as call records and contact information. This creates a surface for indirect prompt injection if external data contains instructions meant to influence the agent's behavior.\n
- Ingestion points: Data returned from membrane action run and membrane request commands (SKILL.md).\n
- Boundary markers: No specific delimiters or instructions to ignore embedded content are provided in the skill instructions.\n
- Capability inventory: Includes shell command execution (membrane), global package installation (npm install), and network-proxied API requests.\n
- Sanitization: The skill does not implement specific sanitization or filtering of the Aircall API responses before they are presented to the agent.
Audit Metadata