zenkit

Pass

Audited by Gen Agent Trust Hub on May 1, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructions include installing the @membranehq/cli package globally via npm. This is the official tool provided by the vendor (Membrane) to facilitate the integration.
  • [COMMAND_EXECUTION]: The agent is instructed to use the membrane CLI for various tasks including authentication, connection discovery, and executing API actions. These commands are necessary for the skill's functionality and are performed within the scope of the vendor's toolset.
  • [DATA_EXFILTRATION]: The skill performs network requests to the Zenkit API through the membrane request proxy. This method is used to securely inject authentication headers and manage token refreshes server-side, following best practices for API integrations.
Audit Metadata
Risk Level
SAFE
Analyzed
May 1, 2026, 03:09 PM
Security Audit — agent-trust-hub — zenkit