digistore24
Pass
Audited by Gen Agent Trust Hub on Apr 24, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
- [SAFE]: The skill implements a secure authentication model using the Membrane platform's official flows (
membrane loginandmembrane connect). This approach ensures that sensitive API keys and tokens are managed server-side by the vendor, preventing local exposure. - [EXTERNAL_DOWNLOADS]: The skill requires the installation of the
@membranehq/clipackage from the npm registry. This is a verified tool maintained by the skill's author and is used as the primary interface for secure data operations. - [SAFE]: All requests to the Digistore24 API are performed through a proxy managed by the vendor. This service handles authentication headers and token refreshes transparently, which minimizes the attack surface and potential for credential leakage.
Audit Metadata