pact-foundation

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes the Membrane CLI (membrane) to perform platform operations such as authentication, connection management, and running actions.
  • [EXTERNAL_DOWNLOADS]: Installs the official @membranehq/cli package from the NPM registry to enable platform interaction.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes data from the Pact Foundation (verification results, pacts) which could potentially contain malicious content; however, the skill operates within the managed Membrane environment.
  • [DYNAMIC_EXECUTION]: Includes functionality to create new actions dynamically (membrane action create) based on natural language descriptions, which are then built and hosted on the Membrane platform.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 04:09 PM
Security Audit — agent-trust-hub — pact-foundation