hostaway

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill utilizes the vendor's official command-line interface (@membranehq/cli) for all operations. These are legitimate resources belonging to the skill author (membranedev).
  • [SAFE]: Security best practices are encouraged, specifically instructing the agent to never request raw API keys or tokens from the user, relying instead on a secure server-side connection flow.
  • [SAFE]: No evidence of prompt injection, data exfiltration, or malicious command execution was found. All network interactions are mediated through the official platform tools.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 09:13 PM
Security Audit — agent-trust-hub — hostaway