sugarcrm

Pass

Audited by Gen Agent Trust Hub on Sep 30, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the @membranehq/cli package via npm. This is a vendor-owned utility used to manage authentication and facilitate communication with the Membrane platform.
  • [COMMAND_EXECUTION]: The skill utilizes the membrane command-line interface to perform several operations, including logging in, establishing connections to SugarCRM instances, and executing CRM actions. These commands are part of the intended functionality for interacting with the Membrane ecosystem.
  • [INDIRECT_PROMPT_INJECTION]: The skill handles customer relationship data, such as notes, tasks, and record details, which are retrieved from SugarCRM. This creates an ingestion point for untrusted external data. While the skill uses structured API actions, the lack of explicit boundary markers or sanitization instructions for the content of these records represents a potential surface for indirect prompt injection if the CRM data contains adversarial instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 30, 2026, 07:29 PM
Security Audit — agent-trust-hub — sugarcrm