questionpro

Pass

Audited by Gen Agent Trust Hub on Apr 30, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the Membrane CLI (@membranehq/cli) via npm and npx. These are official tools provided by the skill's author (membranedev) to facilitate the integration.
  • [COMMAND_EXECUTION]: The skill utilizes several CLI commands (membrane login, membrane connect, membrane action) to manage the connection to QuestionPro and execute actions. These are the primary functions of the skill and do not involve unauthorized or high-risk system modifications.
  • [CREDENTIALS_UNSAFE]: The skill explicitly advises against asking the user for API keys or tokens, directing them instead to use Membrane's managed authentication flow which handles credentials server-side.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 30, 2026, 12:51 PM
Security Audit — agent-trust-hub — questionpro