cometly

Pass

Audited by Gen Agent Trust Hub on Apr 28, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill directs the installation of the @membranehq/cli package via npm, which is the official and documented tool provided by the vendor for integration management.
  • [COMMAND_EXECUTION]: The integration functions by executing shell commands using the membrane utility for authentication, service connection, and the execution of marketing attribution tasks.
  • [DATA_EXPOSURE]: The skill implements secure credential handling by offloading authentication to the Membrane platform's connection manager, preventing the need for the agent or user to manually manage or store sensitive API keys.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 28, 2026, 10:02 AM
Security Audit — agent-trust-hub — cometly