Edrone

Security checks across malware telemetry and agentic risk

Overview

This is a coherent Edrone CRM integration, but it gives an agent broad authenticated API access that can change or delete CRM data without clear confirmation guardrails.

Install only if you trust Membrane and intend to let an agent operate on Edrone CRM data. Prefer Membrane's listed actions over raw proxy requests, and require review of the exact endpoint, HTTP method, and payload before any POST, PUT, PATCH, or DELETE. Revoke the Membrane/Edrone connection when it is no longer needed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The invocation text is broad enough to match many generic requests about data management or workflow automation, which can cause the skill to activate outside clearly intended Edrone-specific contexts. Over-broad activation increases the chance an agent will route unrelated user tasks into a capability that can access or modify external CRM data.

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill documents raw proxy requests with support for POST, PUT, PATCH, and DELETE but does not warn that these methods may create, modify, or delete live Edrone data. In an agent setting, this omission can lead to unintended destructive operations because the proxy mechanism is presented as a normal fallback without safety gating or user confirmation.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal