pact-foundation
Pass
Audited by Gen Agent Trust Hub on Apr 29, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes the Membrane CLI (
membrane) to perform platform operations such as authentication, connection management, and running actions. - [EXTERNAL_DOWNLOADS]: Installs the official
@membranehq/clipackage from the NPM registry to enable platform interaction. - [INDIRECT_PROMPT_INJECTION]: The skill processes data from the Pact Foundation (verification results, pacts) which could potentially contain malicious content; however, the skill operates within the managed Membrane environment.
- [DYNAMIC_EXECUTION]: Includes functionality to create new actions dynamically (
membrane action create) based on natural language descriptions, which are then built and hosted on the Membrane platform.
Audit Metadata