superphone
Pass
Audited by Gen Agent Trust Hub on Apr 29, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the official
@membranehq/clipackage from the npm registry. This is a vendor-owned resource used for legitimate management of the integration.- [COMMAND_EXECUTION]: Uses shell commands to interact with the Membrane CLI for tasks like logging in, creating connections, and running platform actions.- [SAFE]: The skill demonstrates good security posture by explicitly advising against requesting or storing sensitive API keys directly, instead using the platform's managed authentication system.
Audit Metadata