signicat
Pass
Audited by Gen Agent Trust Hub on Apr 28, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the
@membranehq/clipackage globally via NPM. This is an official tool provided by the platform vendor for interacting with their services.\n- [COMMAND_EXECUTION]: Employs themembranecommand-line utility for authentication, connection management, and running integration actions.\n- [REMOTE_CODE_EXECUTION]: Includes the ability to dynamically create new integration logic usingmembrane action create. While this involves code generation, it is a primary feature of the platform performed within the vendor's controlled environment.\n- [CREDENTIALS_UNSAFE]: Demonstrates positive security practices by explicitly advising against asking for API keys or tokens, instead utilizing the platform's internal connection and OAuth management.
Audit Metadata