techwolf

Pass

Audited by Gen Agent Trust Hub on Apr 30, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install @membranehq/cli via NPM. This is a standard dependency for the Membrane platform and is hosted on a well-known package registry.
  • [COMMAND_EXECUTION]: The skill uses various membrane CLI commands (e.g., login, connect, action run) to manage the integration. These are legitimate operational commands and do not involve unauthorized privilege escalation or persistence mechanisms.
  • [CREDENTIALS_UNSAFE]: The skill explicitly advises against handling raw API keys or tokens, directing users to use Membrane's connection system which handles authentication server-side. This aligns with security best practices.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 30, 2026, 01:10 AM