shopwaive

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill facilitates interaction with the Shopwaive e-commerce platform using vendor-provided tooling.
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install @membranehq/cli via NPM. This is an official package from the skill's vendor and is required for the intended functionality.
  • [COMMAND_EXECUTION]: Shell commands are used to interact with the membrane CLI tool for service discovery, connection management, and API interaction. These operations are scoped to the primary purpose of the skill.
  • [CREDENTIALS_UNSAFE]: No hardcoded API keys or tokens were found. The instructions explicitly recommend using the platform's connection manager to handle credentials securely.
  • [DATA_EXFILTRATION]: No unauthorized data exfiltration patterns were detected. Network operations are conducted through the Membrane proxy or CLI, which is consistent with the skill's stated purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 08:11 PM