lano

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the @membranehq/cli package from the public NPM registry. This is a standard installation of a vendor-provided tool for interacting with the Membrane platform.
  • [COMMAND_EXECUTION]: The skill makes extensive use of the membrane CLI to manage integrations, run actions, and perform API requests. These commands are integral to the skill's purpose and follow the platform's documented patterns for secure service interaction.
  • [DATA_EXFILTRATION]: The skill is designed to interact with Lano data; however, it uses a proxy mechanism that injects authentication headers server-side. It explicitly instructs the agent to never ask users for API keys or tokens, reducing the risk of credential exposure.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 10:37 PM