sematext
Pass
Audited by Gen Agent Trust Hub on May 1, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: Downloads and installs the
@membranehq/clipackage from NPM. This is an official vendor resource for the Membrane platform. - [COMMAND_EXECUTION]: Executes CLI commands for authentication, managing Sematext connections, and running data queries.
- [PROMPT_INJECTION]: The skill ingests data from external Sematext actions, creating a surface for indirect prompt injection.
- Ingestion points: Data enters through the output of
membrane action run. - Boundary markers: No specific delimiters or markers are used to separate external data.
- Capability inventory: The skill can execute shell commands through the CLI.
- Sanitization: No evidence of data sanitization or validation of external content.
- [COMMAND_EXECUTION]: Employs
membrane action createwhich results in the dynamic creation of server-side actions from natural language.
Audit Metadata