embrace

Pass

Audited by Gen Agent Trust Hub on May 2, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill utilizes the official @membranehq/cli package from the NPM registry to facilitate communication between the agent and the Embrace platform. This is a standard and expected dependency for the Membrane ecosystem.
  • [SAFE]: No hardcoded credentials or secrets were found. The skill correctly directs the user to perform authentication via the CLI's membrane login flow, which manages tokens securely outside of the skill instructions.
  • [SAFE]: All network operations are performed through the local CLI tool targeting the vendor's own infrastructure (getmembrane.com) and the official Embrace API, which is consistent with the skill's stated purpose.
  • [SAFE]: The instruction set focuses on standard data management tasks such as searching, listing, and running integration actions, without any attempts at privilege escalation or persistence.
Audit Metadata
Risk Level
SAFE
Analyzed
May 2, 2026, 02:49 PM
Security Audit — agent-trust-hub — embrace