payload-cms

Pass

Audited by Gen Agent Trust Hub on May 1, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs the official Membrane CLI package (@membranehq/cli) from the NPM registry. This is a standard and expected installation of a vendor-provided tool.
  • [COMMAND_EXECUTION]: The skill uses various membrane CLI commands to manage authentication and interact with CMS actions. These commands are necessary for the skill's core functionality and do not perform any hidden or suspicious operations.
  • [CREDENTIALS_UNSAFE]: The skill implements safe security practices by explicitly instructing the agent not to handle or request raw API keys or secrets from the user, instead utilizing the platform's server-side connection management.
Audit Metadata
Risk Level
SAFE
Analyzed
May 1, 2026, 04:45 AM
Security Audit — agent-trust-hub — payload-cms