elastic

Pass

Audited by Gen Agent Trust Hub on Apr 21, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the Membrane CLI (@membranehq/cli) from the official NPM registry. This is a standard and safe tool for the service provided by the vendor.
  • [COMMAND_EXECUTION]: The skill uses the membrane command-line tool to perform operations such as searching for connectors, establishing connections, and running actions. These are expected behaviors for a CLI-based integration skill.
  • [CREDENTIALS_UNSAFE]: The skill demonstrates safe credential management by explicitly advising against asking for API keys and instead using Membrane's server-side authentication flows.
  • [DATA_EXFILTRATION]: Network operations are routed through Membrane's proxy (membrane request), which is consistent with the skill's stated purpose of managing Elastic data through the Membrane platform.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 21, 2026, 05:10 PM