ably-realtime
Pass
Audited by Gen Agent Trust Hub on Apr 30, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill installs the
@membranehq/clipackage from the npm registry and usesnpxto execute vendor-provided tools. These resources are official components of the Membrane platform described in the skill author context.\n- [COMMAND_EXECUTION]: The skill utilizesmembraneCLI commands to perform authentication, connection management, and action execution. These commands are restricted to the intended functionality of interacting with the Ably Realtime service via the Membrane gateway.\n- [CREDENTIALS_UNSAFE]: The skill follows security best practices by explicitly instructing the agent not to ask for or handle API keys, instead relying on Membrane's server-side authentication lifecycle.
Audit Metadata