aircall

Pass

Audited by Gen Agent Trust Hub on Sep 22, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill requires the installation of the @membranehq/cli package via npm. This package is the official command-line interface for the Membrane platform, which is the vendor for this skill.- [COMMAND_EXECUTION]: The skill's primary functionality is achieved by executing membrane shell commands to manage connections, list actions, and run API requests against Aircall.- [INDIRECT_PROMPT_INJECTION]: The skill interacts with the Aircall API, ingesting external data such as call records and contact information. This creates a surface for indirect prompt injection if external data contains instructions meant to influence the agent's behavior.\n
  • Ingestion points: Data returned from membrane action run and membrane request commands (SKILL.md).\n
  • Boundary markers: No specific delimiters or instructions to ignore embedded content are provided in the skill instructions.\n
  • Capability inventory: Includes shell command execution (membrane), global package installation (npm install), and network-proxied API requests.\n
  • Sanitization: The skill does not implement specific sanitization or filtering of the Aircall API responses before they are presented to the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 22, 2026, 10:29 AM
Security Audit — agent-trust-hub — aircall