testmo

Pass

Audited by Gen Agent Trust Hub on Apr 30, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the official CLI tool @membranehq/cli from the public npm registry. This is a standard procedure for this vendor's integration ecosystem.
  • [COMMAND_EXECUTION]: The instructions utilize the membrane CLI to perform all tasks, including authentication, service connection, and data manipulation. These commands are localized to the integration's specific purpose.
  • [CREDENTIALS_UNSAFE]: The skill explicitly includes a security advisory recommending against asking users for raw API keys or tokens, instead directing them to use the Membrane connection system which manages the authentication lifecycle server-side.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 30, 2026, 12:03 PM
Security Audit — agent-trust-hub — testmo