akana-by-perforce
Pass
Audited by Gen Agent Trust Hub on Mar 4, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the
@membranehq/clipackage globally via npm and utilizesnpxto run the latest version of the tool. These are official resources provided by the vendor ('membrane') to facilitate the integration. - [COMMAND_EXECUTION]: The skill uses various shell commands (
membrane login,membrane connect,membrane action run) to manage the API integration. These commands are part of the standard operating procedure for the platform and do not involve arbitrary or malicious code execution. - [DATA_EXPOSURE]: The skill promotes secure data handling by using Membrane's connection system for authentication, which prevents the need for hardcoding secrets or asking users for sensitive API keys directly within the agent's prompts.
Audit Metadata