techwolf
Pass
Audited by Gen Agent Trust Hub on Apr 30, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the user to install
@membranehq/clivia NPM. This is a standard dependency for the Membrane platform and is hosted on a well-known package registry. - [COMMAND_EXECUTION]: The skill uses various
membraneCLI commands (e.g.,login,connect,action run) to manage the integration. These are legitimate operational commands and do not involve unauthorized privilege escalation or persistence mechanisms. - [CREDENTIALS_UNSAFE]: The skill explicitly advises against handling raw API keys or tokens, directing users to use Membrane's connection system which handles authentication server-side. This aligns with security best practices.
Audit Metadata