resend

Pass

Audited by Gen Agent Trust Hub on May 2, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the @membranehq/cli package globally via npm. This is a standard installation of the official vendor-provided tool for interacting with the Membrane platform.
  • [COMMAND_EXECUTION]: The skill utilizes several shell commands via the membrane CLI to manage the lifecycle of the Resend integration, including membrane login for authentication, membrane connect for service linking, and membrane action run for executing API requests. These commands are part of the intended functionality for a CLI-based agent skill.
  • [DATA_EXFILTRATION]: The skill follows security best practices by delegating credential management to the Membrane platform. It explicitly instructs the agent to never ask the user for API keys or tokens, instead using server-side managed connections which reduces the risk of credential exposure in the agent's context.
Audit Metadata
Risk Level
SAFE
Analyzed
May 2, 2026, 11:33 AM
Security Audit — agent-trust-hub — resend