coda

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Installs the Membrane CLI from the official NPM registry. This is a standard dependency for interacting with the Membrane platform and originates from a well-known service.
  • [COMMAND_EXECUTION]: Utilizes the membrane command-line tool to manage Coda connections, discover actions, and execute workflows. These operations are within the scope of the skill's primary purpose.
  • [DATA_EXFILTRATION]: Employs a managed authentication flow where the Membrane service handles OAuth credentials server-side. This architecture prevents the exposure of sensitive API keys or session tokens within the local environment or the agent's context.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 11:09 AM
Security Audit — agent-trust-hub — coda