ably-realtime

Pass

Audited by Gen Agent Trust Hub on Apr 30, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs the @membranehq/cli package from the npm registry and uses npx to execute vendor-provided tools. These resources are official components of the Membrane platform described in the skill author context.\n- [COMMAND_EXECUTION]: The skill utilizes membrane CLI commands to perform authentication, connection management, and action execution. These commands are restricted to the intended functionality of interacting with the Ably Realtime service via the Membrane gateway.\n- [CREDENTIALS_UNSAFE]: The skill follows security best practices by explicitly instructing the agent not to ask for or handle API keys, instead relying on Membrane's server-side authentication lifecycle.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 30, 2026, 03:21 PM