channeladvisor
Pass
Audited by Gen Agent Trust Hub on Apr 28, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill requires the installation of the
@membranehq/clipackage from the npm registry. This is the official command-line interface for the Membrane platform. - [COMMAND_EXECUTION]: The instructions utilize the
membraneCLI for authentication (membrane login), connection management (membrane connect), and action execution (membrane action run). These commands are essential for the skill's functionality and are performed through a verified vendor tool. - [SAFE]: The skill follows security best practices by utilizing server-side credential management and explicitly instructing the agent not to request or store API keys or tokens locally. All external resources and packages originate from the official vendor infrastructure.
Audit Metadata