paymob

Pass

Audited by Gen Agent Trust Hub on Apr 30, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs the @membranehq/cli package globally via npm and uses npx to execute vendor-specific tools. These are legitimate resources provided by the skill's author for interacting with the Membrane platform.
  • [COMMAND_EXECUTION]: The skill utilizes the membrane command-line interface to perform administrative tasks such as logging in, creating connections, and executing payment gateway actions.
  • [PROMPT_INJECTION]: The skill ingests user-provided descriptions for action discovery and creation. This data is passed as CLI arguments or within JSON payloads, which is the standard operational pattern for this platform.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 30, 2026, 06:11 PM