propstack

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references the installation of the @membranehq/cli package from the public NPM registry. This is a standard procedure for using the vendor's integration platform.
  • [COMMAND_EXECUTION]: The skill utilizes shell commands through the membrane CLI to manage connections and execute actions. These commands are integral to the skill's functionality and are documented clearly.
  • [CREDENTIALS_UNSAFE]: The skill implements a secure authentication model by using the vendor's platform to handle OAuth flows and token management, explicitly instructing the agent not to request or store API keys directly.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 11:35 PM
Security Audit — agent-trust-hub — propstack