bambora

Pass

Audited by Gen Agent Trust Hub on Apr 25, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the official Membrane CLI (@membranehq/cli) from the npm registry. This is a standard dependency for skills created by the vendor.
  • [COMMAND_EXECUTION]: The skill uses the membrane command-line tool to facilitate authentication, search for connectors, and execute API actions. These commands are part of the intended integration workflow.
  • [CREDENTIALS_UNSAFE]: The skill explicitly advises against asking users for API keys, instead utilizing the Membrane platform's built-in connection management to handle authentication securely server-side.
  • [DATA_EXFILTRATION]: No unauthorized data transfer or exfiltration patterns were detected. Network requests are routed through the vendor's authenticated proxy.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 25, 2026, 11:04 AM