skills/membranedev/application-skills/api-to-every-ecommerce-cart-and-marketplace/Gen Agent Trust Hub
api-to-every-ecommerce-cart-and-marketplace
Pass
Audited by Gen Agent Trust Hub on Mar 4, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill utilizes the official @membranehq/cli tool, which is installed from the public NPM registry. This is a legitimate dependency provided by the skill's author to facilitate interaction with the Membrane platform.
- [COMMAND_EXECUTION]: The skill uses the 'membrane' CLI to manage authentication, search for connectors, and execute actions. These commands are part of the intended functionality for integrating with the Membrane ecosystem and do not involve unauthorized privilege escalation or persistence.
- [SAFE]: The skill explicitly advises against asking users for secrets or API keys, recommending the use of connections managed server-side by Membrane, which reduces the risk of credential exposure.
Audit Metadata