code42
Pass
Audited by Gen Agent Trust Hub on Apr 22, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the installation of the official
@membranehq/clipackage from the NPM registry, which is a standard tool for this vendor's ecosystem. - [COMMAND_EXECUTION]: Various shell commands are used to interact with the
membraneCLI for managing connections and executing actions on the Code42 platform. These are routine operations for the skill's stated purpose. - [CREDENTIALS_UNSAFE]: The skill correctly delegates authentication to the
membrane loginworkflow, ensuring that no sensitive API keys or tokens are stored locally or hardcoded in the instructions. - [DATA_EXFILTRATION]: The skill processes data from the Code42 API (such as file events and alerts). Network communication is handled through the vendor's managed infrastructure to the official Code42 endpoints.
Audit Metadata