smarty

Pass

Audited by Gen Agent Trust Hub on Apr 30, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs the @membranehq/cli package from the NPM registry, which is the official tool provided by the vendor (membranedev) to interact with their platform.
  • [COMMAND_EXECUTION]: The skill utilizes several shell commands via the Membrane CLI, such as membrane login, membrane connect, and membrane action run, which are standard for managing platform integrations.
  • [SAFE]: No malicious patterns, such as prompt injection, data exfiltration, or obfuscation, were identified. The skill's functionality is consistent with the vendor's documented ecosystem.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 30, 2026, 05:37 PM
Security Audit — agent-trust-hub — smarty