calendly

Pass

Audited by Gen Agent Trust Hub on May 1, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the @membranehq/cli package from the npm registry. This is a legitimate download of the official command-line tool for the Membrane platform.
  • [COMMAND_EXECUTION]: The skill relies on executing membrane CLI commands to perform operations such as logging in, connecting to Calendly, and running actions. These are standard operational tasks for the platform.
  • [CREDENTIALS_UNSAFE]: The skill follows security best practices by utilizing the platform's delegated authentication flow rather than requiring the agent or user to handle hardcoded API keys or tokens.
  • [SAFE]: No malicious patterns, such as obfuscation, unauthorized data exfiltration, or persistence mechanisms, were detected during the analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
May 1, 2026, 08:50 PM
Security Audit — agent-trust-hub — calendly