tisane-labs

Pass

Audited by Gen Agent Trust Hub on Apr 29, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill directs the user to install @membranehq/cli from the npm registry. This is a vendor-owned package (membranedev) required for the platform's functionality.\n- [COMMAND_EXECUTION]: The skill uses terminal commands via the membrane CLI to manage connections and execute text analysis actions. This is consistent with the intended use case of the skill.\n- [DATA_EXFILTRATION]: The skill explicitly instructs the agent to let the Membrane platform handle authentication and tokens, avoiding the collection of sensitive API keys or credentials directly from the user.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 29, 2026, 10:37 PM
Security Audit — agent-trust-hub — tisane-labs