spiritme

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs the @membranehq/cli package via npm. This is a vendor-provided tool required for the skill to interact with the Membrane platform.
  • [COMMAND_EXECUTION]: Utilizes various membrane CLI commands to manage authentication, list connections, and execute actions. These commands are used as intended for service integration and do not involve shell injection or privilege escalation.
  • [SAFE]: No evidence of prompt injection, data exfiltration, or obfuscation was found. The skill explicitly instructs the agent to avoid asking for user credentials, which aligns with secure development practices.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 05:38 PM