clientify

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill requires the installation of the @membranehq/cli Node.js package. This is a vendor-owned command-line tool used to manage the authentication lifecycle and facilitate communication between the agent and the Membrane integration platform.\n- [INDIRECT_PROMPT_INJECTION]: The skill ingests data from an external source (Clientify API) into the agent's context. This ingestion represents a vulnerability surface where instructions embedded in external database records or task descriptions could attempt to influence the agent's behavior.\n
  • Ingestion points: Data returned by the membrane action run and membrane request commands as specified in SKILL.md.\n
  • Boundary markers: No specific delimiters or "ignore embedded instructions" headers are provided to isolate untrusted external content.\n
  • Capability inventory: The skill leverages a CLI capable of executing shell commands and performing network operations against the Membrane proxy.\n
  • Sanitization: The instructions do not prescribe specific validation or sanitization of the retrieved data before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 08:33 AM
Security Audit — agent-trust-hub — clientify