talentlyft
Pass
Audited by Gen Agent Trust Hub on May 1, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill installs the
@membranehq/clipackage from the official npm registry. This is the expected tool for the Membrane platform. - [COMMAND_EXECUTION]: The skill uses shell commands to interact with the Membrane CLI for authentication (
membrane login), connection management (membrane connect), and action execution (membrane action run). These are documented and legitimate uses of the tool. - [SAFE]: The instructions explicitly recommend using the platform's connection management to avoid handling raw API keys or tokens, which is a security best practice for managing external service credentials.
Audit Metadata