retriever

Pass

Audited by Gen Agent Trust Hub on Apr 30, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the official @membranehq/cli package from the NPM registry. This is a legitimate dependency for the author's platform integration.
  • [COMMAND_EXECUTION]: Uses standard CLI commands (e.g., membrane login, membrane action run) to interact with the Membrane service. The commands are well-documented and consistent with the skill's stated purpose.
  • [SAFE]: No malicious patterns such as prompt injection, obfuscation, or unauthorized data exfiltration were detected. The skill promotes security best practices by delegating authentication to the Membrane platform instead of requesting local storage of API keys.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 30, 2026, 03:20 PM