goodbits

Pass

Audited by Gen Agent Trust Hub on May 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill utilizes the @membranehq/cli Node.js package and the getmembrane.com domain, both of which are official resources belonging to the vendor (membranedev).
  • [SAFE]: The skill implements secure credential management practices by instructing the agent to use membrane connect for authentication, specifically advising against asking users for API keys or tokens.
  • [EXTERNAL_DOWNLOADS]: The skill guides the installation of the @membranehq/cli package from the public npm registry. This is the expected and legitimate method for acquiring the vendor's command-line interface.
Audit Metadata
Risk Level
SAFE
Analyzed
May 1, 2026, 07:46 PM
Security Audit — agent-trust-hub — goodbits