saaspass
Pass
Audited by Gen Agent Trust Hub on Apr 30, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill requires the installation of the
@membranehq/clipackage from the official NPM registry. This is a standard dependency for the skill's functionality and originates from the recognized vendor. - [COMMAND_EXECUTION]: The skill uses shell commands via the Membrane CLI to perform authentication (
membrane login), connection setup (membrane connect), and action execution (membrane action run). These operations are the primary purpose of the skill and are performed within the scope of the Membrane platform. - [DATA_EXFILTRATION]: The skill explicitly follows security best practices by advising against the manual handling of API keys or tokens, instead using a server-side connection management system that prevents local credential exposure.
Audit Metadata