chipax
Pass
Audited by Gen Agent Trust Hub on Apr 29, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns, obfuscation, or unauthorized data exfiltration attempts were detected.
- [COMMAND_EXECUTION]: The skill uses the
membraneCLI to interact with the Chipax service. This is the intended and documented method for using this integration, utilizing the official vendor tool (@membranehq/cli). - [EXTERNAL_DOWNLOADS]: The skill requires the installation of the
@membranehq/clifrom the official NPM registry. This is a standard dependency provided by the vendor (membranedev) and is necessary for the skill's functionality. - [CREDENTIALS_UNSAFE]: The skill explicitly instructs the agent to let the Membrane platform handle credentials and never to ask the user for API keys or tokens. This is a strong security practice that prevents credential exposure.
Audit Metadata