superphone

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the official @membranehq/cli package from the npm registry. This is a vendor-owned resource used for legitimate management of the integration.- [COMMAND_EXECUTION]: Uses shell commands to interact with the Membrane CLI for tasks like logging in, creating connections, and running platform actions.- [SAFE]: The skill demonstrates good security posture by explicitly advising against requesting or storing sensitive API keys directly, instead using the platform's managed authentication system.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 06:50 PM
Security Audit — agent-trust-hub — superphone