lano
Pass
Audited by Gen Agent Trust Hub on Apr 29, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the
@membranehq/clipackage from the public NPM registry. This is a standard installation of a vendor-provided tool for interacting with the Membrane platform. - [COMMAND_EXECUTION]: The skill makes extensive use of the
membraneCLI to manage integrations, run actions, and perform API requests. These commands are integral to the skill's purpose and follow the platform's documented patterns for secure service interaction. - [DATA_EXFILTRATION]: The skill is designed to interact with Lano data; however, it uses a proxy mechanism that injects authentication headers server-side. It explicitly instructs the agent to never ask users for API keys or tokens, reducing the risk of credential exposure.
Audit Metadata