cashfree

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes the membrane CLI tool for operations such as authentication (membrane login), connection management (membrane connection ensure), and executing API actions (membrane action run). These are standard functional requirements for the integration.
  • [EXTERNAL_DOWNLOADS]: Instructions include installing the @membranehq/cli package from the NPM registry. This is the official command-line interface provided by the vendor for managing connections and interacting with the platform.
  • [INDIRECT_PROMPT_INJECTION]:
  • Ingestion points: The skill ingests payment and order data from Cashfree's API through actions or direct requests via the Membrane proxy.
  • Boundary markers: The skill does not explicitly provide delimiters or "ignore instructions" prompts for data returned from the API.
  • Capability inventory: The skill possesses network access (via the proxy) and the ability to execute CLI commands.
  • Sanitization: The instructions do not define specific sanitization routines, relying on the agent's built-in handling of external data strings.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 04:21 AM
Security Audit — agent-trust-hub — cashfree