graphql-editor

Pass

Audited by Gen Agent Trust Hub on Apr 28, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the @membranehq/cli package from the official NPM registry. This is a standard procedure for using the vendor's platform and involves a well-known service.
  • [COMMAND_EXECUTION]: The skill utilizes several CLI commands (membrane login, membrane connect, membrane action run) to manage the integration. These commands are necessary for the intended functionality and are executed via the official vendor CLI.
  • [CREDENTIALS_UNSAFE]: The skill explicitly adheres to security best practices by instructing the agent to never ask for user API keys or tokens, instead utilizing Membrane's server-side connection management to handle the authentication lifecycle.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 28, 2026, 09:29 PM
Security Audit — agent-trust-hub — graphql-editor