kotive

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill specifies the installation of the @membranehq/cli package from the NPM registry. This is the official command-line tool provided by the vendor (Membrane) and is required for the skill to function.
  • [COMMAND_EXECUTION]: The instructions involve running various membrane CLI commands to list, create, and run actions. These are standard operations for interacting with the Membrane platform.
  • [CREDENTIALS_UNSAFE]: The skill explicitly instructs the agent to let Membrane handle the authentication lifecycle and advises against requesting API keys or tokens from the user, which is a security best practice for credential management.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 04:52 PM
Security Audit — agent-trust-hub — kotive