hr-cloud
Pass
Audited by Gen Agent Trust Hub on Apr 29, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill requires the installation of the
@membranehq/clipackage via npm. This is the official command-line interface for the Membrane platform, which is the vendor for this skill. - [COMMAND_EXECUTION]: The skill uses various
membraneCLI commands to manage connections and execute actions. These commands are used as intended for the platform's integration logic. - [DATA_EXFILTRATION]: While the skill interacts with sensitive HR data such as employee records and documents, it does so through authenticated connections managed by the Membrane platform rather than direct API calls with exposed secrets.
- [REMOTE_CODE_EXECUTION]: The skill includes a feature to dynamically create new actions based on natural language descriptions (
membrane action create). This is a standard capability of the Membrane platform for generating integration code.
Audit Metadata