qlik

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches and installs the @membranehq/cli tool from the official NPM registry to provide the necessary command-line interface for platform operations.
  • [COMMAND_EXECUTION]: Employs the membrane CLI to perform user authentication, initialize connections to Qlik services, and execute data-driven actions.
  • [PROMPT_INJECTION]: The skill retrieves data from external Qlik sheets and applications, which introduces a surface for indirect prompt injection. Ingestion points: Data retrieved from Qlik via action execution (SKILL.md). Boundary markers: Absent. Capability inventory: Command-line execution via the membrane tool. Sanitization: Not specified for external data inputs.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 08:42 PM