talentlyft

Pass

Audited by Gen Agent Trust Hub on May 1, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs the @membranehq/cli package from the official npm registry. This is the expected tool for the Membrane platform.
  • [COMMAND_EXECUTION]: The skill uses shell commands to interact with the Membrane CLI for authentication (membrane login), connection management (membrane connect), and action execution (membrane action run). These are documented and legitimate uses of the tool.
  • [SAFE]: The instructions explicitly recommend using the platform's connection management to avoid handling raw API keys or tokens, which is a security best practice for managing external service credentials.
Audit Metadata
Risk Level
SAFE
Analyzed
May 1, 2026, 02:23 AM