sematext

Pass

Audited by Gen Agent Trust Hub on May 1, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Downloads and installs the @membranehq/cli package from NPM. This is an official vendor resource for the Membrane platform.
  • [COMMAND_EXECUTION]: Executes CLI commands for authentication, managing Sematext connections, and running data queries.
  • [PROMPT_INJECTION]: The skill ingests data from external Sematext actions, creating a surface for indirect prompt injection.
  • Ingestion points: Data enters through the output of membrane action run.
  • Boundary markers: No specific delimiters or markers are used to separate external data.
  • Capability inventory: The skill can execute shell commands through the CLI.
  • Sanitization: No evidence of data sanitization or validation of external content.
  • [COMMAND_EXECUTION]: Employs membrane action create which results in the dynamic creation of server-side actions from natural language.
Audit Metadata
Risk Level
SAFE
Analyzed
May 1, 2026, 11:50 PM