hygraph

Pass

Audited by Gen Agent Trust Hub on Apr 30, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the Membrane CLI package (@membranehq/cli). This is an official tool provided by the vendor to facilitate secure API interactions.
  • [COMMAND_EXECUTION]: The skill utilizes the membrane command-line interface to manage connections and execute GraphQL queries. These commands are part of the intended functionality for interacting with the Hygraph API.
  • [CREDENTIALS_UNSAFE]: The skill demonstrates safe credential handling by advising users to use Membrane's connection system instead of manually managing API keys or tokens.
  • [DATA_EXFILTRATION]: While the skill interacts with external content via Hygraph, all network operations are directed through the Membrane proxy or defined actions, which is standard for this type of integration.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 30, 2026, 09:51 AM
Security Audit — agent-trust-hub — hygraph