digistore24

Pass

Audited by Gen Agent Trust Hub on Apr 24, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
  • [SAFE]: The skill implements a secure authentication model using the Membrane platform's official flows (membrane login and membrane connect). This approach ensures that sensitive API keys and tokens are managed server-side by the vendor, preventing local exposure.
  • [EXTERNAL_DOWNLOADS]: The skill requires the installation of the @membranehq/cli package from the npm registry. This is a verified tool maintained by the skill's author and is used as the primary interface for secure data operations.
  • [SAFE]: All requests to the Digistore24 API are performed through a proxy managed by the vendor. This service handles authentication headers and token refreshes transparently, which minimizes the attack surface and potential for credential leakage.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 24, 2026, 12:05 PM