ceipal

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill recommends installing the @membranehq/cli tool from the official npm registry. This is a vendor-provided dependency required for the platform's operation.
  • [COMMAND_EXECUTION]: Instructions guide the agent to use shell commands via the membrane CLI for logging in and executing Ceipal actions. These operations are within the intended scope of the skill's talent management functionality.
  • [DATA_EXFILTRATION]: No evidence of malicious data exfiltration was detected. The skill promotes security best practices by utilizing Membrane's server-side authentication system, which ensures that sensitive API keys and tokens are not handled directly by the agent or stored in the local environment.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 05:38 AM
Security Audit — agent-trust-hub — ceipal