box
Pass
Audited by Gen Agent Trust Hub on Apr 30, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes the
membraneCLI tool to perform operations such as authentication, action discovery, and execution. These commands are part of the vendor's orchestration layer for managing third-party connections. - [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the
@membranehq/clipackage from npm. This is a legitimate vendor resource provided by the skill's author to enable the necessary integration capabilities. - [CREDENTIALS_UNSAFE]: The skill follows security best practices by delegating credential management to the Membrane platform. It explicitly advises the agent not to ask users for secrets, instead using a server-side connection model that manages the full authentication lifecycle.
Audit Metadata