whereby

Pass

Audited by Gen Agent Trust Hub on May 2, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill recommends installing the @membranehq/cli package via npm. This is an official package provided by the vendor for interacting with their platform and is a standard development practice.
  • [COMMAND_EXECUTION]: The skill utilizes the membrane CLI to manage connections and run actions. These commands are part of the intended functionality of the skill and do not include any suspicious or obfuscated execution patterns.
  • [CREDENTIALS_UNSAFE]: The skill explicitly instructs the agent never to ask the user for API keys or tokens, directing it to use Membrane's server-side connection management instead. This is a positive security practice that prevents credential exposure in local environments.
Audit Metadata
Risk Level
SAFE
Analyzed
May 2, 2026, 10:48 PM