twocaptcha
Pass
Audited by Gen Agent Trust Hub on Sep 18, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the agent to install the '@membranehq/cli' package from the npm registry. This is the official command-line tool provided by the vendor (Membrane) to facilitate the skill's functionality.
- [COMMAND_EXECUTION]: The instructions guide the agent to execute various 'membrane' CLI commands to manage authentication, establish connections to 2Captcha, and run specific actions. These operations are essential for the skill's stated purpose of interacting with the 2Captcha API.
- [INDIRECT_PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface as it interpolates user-provided intents and JSON parameters into CLI commands ('membrane action list --intent "QUERY"'). While the provided instructions do not specify explicit boundary markers or sanitization steps for this external data, the use of a structured CLI for these interactions is a standard pattern for AI agent integrations.
Audit Metadata