nextcloud
Pass
Audited by Gen Agent Trust Hub on Sep 19, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the
@membranehq/clipackage from the NPM registry. This is a standard requirement for the Membrane platform and originates from the vendor's ecosystem. - [COMMAND_EXECUTION]: The skill utilizes the
membranecommand-line tool to manage authentications, connections, and actions. These commands are local shell executions intended for the agent to interact with the platform. - [INDIRECT_PROMPT_INJECTION]: The skill is designed to process data from a Nextcloud instance (such as file contents or group names) which could potentially contain untrusted content.
- Ingestion points: Data retrieved via
membrane action runandmembrane request. - Boundary markers: None explicitly defined in the skill instructions.
- Capability inventory: The skill has the capability to write to the file system and perform network requests through the Membrane proxy.
- Sanitization: Not specified; the skill relies on the agent's internal processing logic for external data.
Audit Metadata