goody

Pass

Audited by Gen Agent Trust Hub on May 9, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the @membranehq/cli package from the official NPM registry. This is a standard procedure for using the vendor's toolset.
  • [COMMAND_EXECUTION]: The skill uses the membrane CLI to perform operations such as logging in, connecting to services, and running actions. These commands are part of the intended functionality for interacting with the Membrane platform.
  • [DATA_EXFILTRATION]: The skill explicitly advises against asking the user for sensitive credentials (API keys, tokens), instead relying on Membrane's server-side connection management, which reduces the risk of credential exposure.
Audit Metadata
Risk Level
SAFE
Analyzed
May 9, 2026, 08:12 AM