xperiencify

Pass

Audited by Gen Agent Trust Hub on Apr 28, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the @membranehq/cli package, which is the official command-line interface for the Membrane platform. This tool is used for authentication and service interaction.
  • [COMMAND_EXECUTION]: The skill uses the membrane CLI to execute various integration tasks, including connecting to the Xperiencify connector and running actions. These commands are standard for managing workflows within the Membrane ecosystem.
  • [DATA_EXFILTRATION]: The skill explicitly advises against asking for or storing API keys, instead relying on Membrane's centralized connection management to handle authentication securely.
  • [PROMPT_INJECTION]: As the skill retrieves data from Xperiencify (such as course content or student records), it processes external data. This is a common pattern for integration skills and does not involve any detected malicious injection attempts.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 28, 2026, 10:53 PM
Security Audit — agent-trust-hub — xperiencify