processplan

Pass

Audited by Gen Agent Trust Hub on May 6, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the @membranehq/cli package via npm. This is a global CLI tool required to interact with the Membrane platform.
  • [COMMAND_EXECUTION]: The skill leverages the membrane command-line utility to perform administrative and operational tasks, including authentication, connection management, and executing remote business logic through ProcessPlan.
  • [DATA_EXFILTRATION]: No data exfiltration patterns were detected. The skill explicitly advises against asking users for API keys or tokens, instead utilizing a server-side connection model where credentials are managed by the platform infrastructure.
Audit Metadata
Risk Level
SAFE
Analyzed
May 6, 2026, 12:04 AM
Security Audit — agent-trust-hub — processplan