signicat

Pass

Audited by Gen Agent Trust Hub on Apr 28, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the @membranehq/cli package globally via NPM. This is an official tool provided by the platform vendor for interacting with their services.\n- [COMMAND_EXECUTION]: Employs the membrane command-line utility for authentication, connection management, and running integration actions.\n- [REMOTE_CODE_EXECUTION]: Includes the ability to dynamically create new integration logic using membrane action create. While this involves code generation, it is a primary feature of the platform performed within the vendor's controlled environment.\n- [CREDENTIALS_UNSAFE]: Demonstrates positive security practices by explicitly advising against asking for API keys or tokens, instead utilizing the platform's internal connection and OAuth management.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 28, 2026, 08:13 PM