graphcms
Pass
Audited by Gen Agent Trust Hub on May 1, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the
membraneCLI for managing service connections and executing actions. These commands are standard for the intended integration and are used to interact with the vendor's platform. - [EXTERNAL_DOWNLOADS]: The skill recommends installing the official Membrane CLI (
@membranehq/cli) via NPM. This is a standard installation process for the tool required by the skill. - [CREDENTIALS_UNSAFE]: The skill follows security best practices by explicitly instructing the agent to never ask for user API keys or tokens, instead relying on the Membrane platform's server-side authentication management.
Audit Metadata