zencom

Pass

Audited by Gen Agent Trust Hub on May 1, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Fetches the official Membrane CLI from the npm registry to facilitate platform interactions.- [COMMAND_EXECUTION]: Utilizes the membrane CLI to perform authenticated operations, including account management and transaction processing.- [SAFE]: Implements a delegated authentication model where the agent interacts with a secure intermediary rather than handling sensitive ZEN.COM API credentials directly.- [PROMPT_INJECTION]: The skill accepts natural language intents to discover or create automated actions on the platform.
  • Ingestion points: User-defined intents and descriptions in SKILL.md.
  • Boundary markers: Absent; commands use shell argument passing.
  • Capability inventory: Platform-managed action execution and creation described in SKILL.md.
  • Sanitization: Delegated to the Membrane platform's internal processing.
Audit Metadata
Risk Level
SAFE
Analyzed
May 1, 2026, 03:48 AM
Security Audit — agent-trust-hub — zencom