扫描报告
5 /100
railsr
Railsr integration for banking and compliance platform API management
Documentation-only skill providing instructions to use the legitimate Membrane CLI for Railsr API integration. No executable code or suspicious patterns detected.
可以安装
Skill is safe to use. Continue monitoring external URLs for IOC updates.
| 资源类型 | 声明权限 | 推断权限 | 状态 | 证据 |
|---|---|---|---|---|
| 文件系统 | NONE | NONE | — | N/A - no file operations documented or required |
| 网络访问 | READ | READ | ✓ 一致 | SKILL.md: Network access declared for Membrane CLI to communicate with Railsr AP… |
| 命令执行 | NONE | NONE | — | SKILL.md: Shell commands documented are npm/node CLI invocations only, not direc… |
| 环境变量 | NONE | NONE | — | N/A - no environment variable access documented |
| 技能调用 | NONE | NONE | — | N/A - no skill chaining documented |
| 剪贴板 | NONE | NONE | — | N/A - no clipboard access documented |
| 浏览器 | NONE | NONE | — | SKILL.md: Browser used only for OAuth flow (user action, not agent control) |
| 数据库 | NONE | NONE | — | N/A - no database access documented |
2 项发现
中危 外部 URL 外部 URL
https://getmembrane.com SKILL.md:7 中危 外部 URL 外部 URL
https://docs.railsr.com/ SKILL.md:19 目录结构
1 文件 · 4.3 KB · 124 行 Markdown 1f · 124L
└─
SKILL.md
Markdown
安全亮点
✓ No executable code or scripts present - documentation only
✓ Legitimate service integration with membranehq.com CLI
✓ No credential harvesting - uses OAuth flow managed by Membrane
✓ No obfuscation or base64-encoded payloads
✓ No suspicious network patterns or hardcoded IPs
✓ Clear documentation of intended functionality
✓ MIT license with public repository