retriever
Pass
Audited by Gen Agent Trust Hub on Apr 30, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the official
@membranehq/clipackage from the NPM registry. This is a legitimate dependency for the author's platform integration. - [COMMAND_EXECUTION]: Uses standard CLI commands (e.g.,
membrane login,membrane action run) to interact with the Membrane service. The commands are well-documented and consistent with the skill's stated purpose. - [SAFE]: No malicious patterns such as prompt injection, obfuscation, or unauthorized data exfiltration were detected. The skill promotes security best practices by delegating authentication to the Membrane platform instead of requesting local storage of API keys.
Audit Metadata