spiritme
Pass
Audited by Gen Agent Trust Hub on Apr 29, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill installs the
@membranehq/clipackage via npm. This is a vendor-provided tool required for the skill to interact with the Membrane platform. - [COMMAND_EXECUTION]: Utilizes various
membraneCLI commands to manage authentication, list connections, and execute actions. These commands are used as intended for service integration and do not involve shell injection or privilege escalation. - [SAFE]: No evidence of prompt injection, data exfiltration, or obfuscation was found. The skill explicitly instructs the agent to avoid asking for user credentials, which aligns with secure development practices.
Audit Metadata