opslevel

Pass

Audited by Gen Agent Trust Hub on May 2, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the @membranehq/cli package from the npm registry. This is the official command-line interface provided by the vendor (Membrane) for platform interactions.
  • [COMMAND_EXECUTION]: The skill uses the membrane CLI to perform administrative and operational tasks such as logging in, creating connections, and executing actions. These commands are part of the intended integration workflow.
  • [CREDENTIALS_UNSAFE]: The skill promotes secure practices by utilizing the platform's native connection management. It explicitly instructs the agent to never ask the user for API keys or tokens, instead managing the full authentication lifecycle server-side.
Audit Metadata
Risk Level
SAFE
Analyzed
May 2, 2026, 11:05 AM
Security Audit — agent-trust-hub — opslevel