erpnext

Pass

Audited by Gen Agent Trust Hub on Apr 30, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Instructs the user to install the Membrane CLI tool (@membranehq/cli) from the official npm registry. This is a standard and expected dependency for the skill's operation.
  • [COMMAND_EXECUTION]: Relies on the execution of the membrane CLI to perform various tasks such as authentication (membrane login), connection management (membrane connection ensure), and running ERPNext actions. These commands are scoped to the vendor's platform functionality.
  • [DATA_EXFILTRATION]: Provides the ability to read and manage sensitive business data from ERPNext, including accounting, CRM, and employee information. This access is the primary purpose of the skill and is secured through Membrane's authentication proxy, which ensures that credentials are managed server-side and never exposed to the agent or local environment.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 30, 2026, 12:06 AM
Security Audit — agent-trust-hub — erpnext