clientify
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill requires the installation of the
@membranehq/cliNode.js package. This is a vendor-owned command-line tool used to manage the authentication lifecycle and facilitate communication between the agent and the Membrane integration platform.\n- [INDIRECT_PROMPT_INJECTION]: The skill ingests data from an external source (Clientify API) into the agent's context. This ingestion represents a vulnerability surface where instructions embedded in external database records or task descriptions could attempt to influence the agent's behavior.\n - Ingestion points: Data returned by the
membrane action runandmembrane requestcommands as specified inSKILL.md.\n - Boundary markers: No specific delimiters or "ignore embedded instructions" headers are provided to isolate untrusted external content.\n
- Capability inventory: The skill leverages a CLI capable of executing shell commands and performing network operations against the Membrane proxy.\n
- Sanitization: The instructions do not prescribe specific validation or sanitization of the retrieved data before it is processed by the agent.
Audit Metadata