channeladvisor

Pass

Audited by Gen Agent Trust Hub on Apr 28, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill requires the installation of the @membranehq/cli package from the npm registry. This is the official command-line interface for the Membrane platform.
  • [COMMAND_EXECUTION]: The instructions utilize the membrane CLI for authentication (membrane login), connection management (membrane connect), and action execution (membrane action run). These commands are essential for the skill's functionality and are performed through a verified vendor tool.
  • [SAFE]: The skill follows security best practices by utilizing server-side credential management and explicitly instructing the agent not to request or store API keys or tokens locally. All external resources and packages originate from the official vendor infrastructure.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 28, 2026, 03:00 PM