whitesource
Pass
Audited by Gen Agent Trust Hub on Apr 28, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: Installs the official Membrane CLI (
@membranehq/cli) from npm. This package is the standard tool for the vendor's platform and is required for the skill's operation. - [CREDENTIALS_UNSAFE]: Uses a secure authentication workflow (
membrane login) that avoids the use of hardcoded secrets or environment variables. Credentials are managed server-side by the platform. - [COMMAND_EXECUTION]: Employs the
membraneCLI to execute actions and manage workflows. These commands are part of the intended integration logic and do not involve unauthorized privilege escalation or persistence.
Audit Metadata