dromo

Pass

Audited by Gen Agent Trust Hub on May 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill utilizes the official CLI tool from the vendor (@membranehq/cli) to handle integrations, which is a standard and safe practice for this type of service.
  • [EXTERNAL_DOWNLOADS]: The skill references the installation of the Membrane CLI from the NPM registry, which is a well-known and trusted service for package distribution.
  • [COMMAND_EXECUTION]: The instructions involve standard command-line operations for logging in and managing connections via the vendor's platform. These commands are transparent and do not involve suspicious or obfuscated execution patterns.
  • [CREDENTIALS_UNSAFE]: The skill explicitly discourages the manual handling of API keys and tokens, directing the user toward the vendor's secure connection management system instead.
Audit Metadata
Risk Level
SAFE
Analyzed
May 2, 2026, 11:48 PM
Security Audit — agent-trust-hub — dromo