lightspeed-ecom

Pass

Audited by Gen Agent Trust Hub on May 4, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the @membranehq/cli package from the official NPM registry, which is the legitimate tool for interacting with the vendor's platform.
  • [COMMAND_EXECUTION]: Employs standard shell commands via the membrane CLI to manage e-commerce resources, such as listing connections and executing predefined actions.
  • [CREDENTIALS_UNSAFE]: Security is maintained by delegating authentication to the Membrane platform. The skill explicitly advises against asking users for API keys, instead using a secure connection-based flow.
Audit Metadata
Risk Level
SAFE
Analyzed
May 4, 2026, 10:54 PM