okta

Pass

Audited by Gen Agent Trust Hub on Sep 23, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill requires the installation of the @membranehq/cli package via NPM to interact with the Membrane platform. This is a vendor-owned tool used for managing connections and running actions.\n- [COMMAND_EXECUTION]: The skill uses the membrane CLI to perform authentication, connection setup, and data manipulation in the target Okta environment.\n- [INDIRECT_PROMPT_INJECTION]: The skill processes data retrieved from Okta (such as user and group details), which represents an attack surface if the retrieved data contains malicious instructions.\n
  • Ingestion points: Data returned by membrane action run, membrane action list, and membrane request commands.\n
  • Boundary markers: No explicit delimiters or instructions are provided to the agent to treat external data as untrusted or to ignore embedded instructions.\n
  • Capability inventory: The skill possesses capabilities to modify Okta resources (create, update, delete users and groups) and perform arbitrary API requests using membrane request.\n
  • Sanitization: There are no documented steps for sanitizing or validating information fetched from the external identity provider before it is processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 23, 2026, 12:02 PM
Security Audit — agent-trust-hub — okta