akana-by-perforce

Pass

Audited by Gen Agent Trust Hub on Mar 4, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the @membranehq/cli package globally via npm and utilizes npx to run the latest version of the tool. These are official resources provided by the vendor ('membrane') to facilitate the integration.
  • [COMMAND_EXECUTION]: The skill uses various shell commands (membrane login, membrane connect, membrane action run) to manage the API integration. These commands are part of the standard operating procedure for the platform and do not involve arbitrary or malicious code execution.
  • [DATA_EXPOSURE]: The skill promotes secure data handling by using Membrane's connection system for authentication, which prevents the need for hardcoding secrets or asking users for sensitive API keys directly within the agent's prompts.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 4, 2026, 08:54 AM