rapidapi
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the Membrane CLI package (@membranehq/cli) from the official npm registry. This is a standard dependency for interacting with the Membrane platform.\n- [COMMAND_EXECUTION]: The skill provides various shell commands for the agent to use, including CLI login, connection management, and running actions. These commands are necessary for the intended functionality of the skill.\n- [INDIRECT_PROMPT_INJECTION]: The skill interacts with external APIs through RapidAPI, which represents a surface for indirect prompt injection if the ingested data contains malicious instructions.\n
- Ingestion points: Data returned from membrane action run and membrane request commands in SKILL.md.\n
- Boundary markers: The instructions do not define explicit delimiters or warnings for the agent to ignore instructions embedded in the API responses.\n
- Capability inventory: The agent can execute CLI commands that perform network requests and trigger platform actions.\n
- Sanitization: There is no specific evidence of sanitization or filtering of the external API content within the provided skill instructions.
Audit Metadata