box

Pass

Audited by Gen Agent Trust Hub on Apr 30, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes the membrane CLI tool to perform operations such as authentication, action discovery, and execution. These commands are part of the vendor's orchestration layer for managing third-party connections.
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the @membranehq/cli package from npm. This is a legitimate vendor resource provided by the skill's author to enable the necessary integration capabilities.
  • [CREDENTIALS_UNSAFE]: The skill follows security best practices by delegating credential management to the Membrane platform. It explicitly advises the agent not to ask users for secrets, instead using a server-side connection model that manages the full authentication lifecycle.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 30, 2026, 03:20 AM