firebase-admin-sdk

Pass

Audited by Gen Agent Trust Hub on Apr 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill instructs the user to install the @membranehq/cli package. This is a vendor-owned resource belonging to the skill's author (membranedev) and is used for its intended purpose of managing platform connections.
  • [SAFE]: Authentication is handled server-side through the membrane connect workflow. The skill explicitly discourages asking users for API keys or tokens, which reduces the risk of credential exposure.
  • [SAFE]: Network operations are conducted via the membrane request proxy. This centralized approach allows for controlled API interactions and transparent credential refreshing without exposing secrets to the local environment.
  • [SAFE]: No malicious patterns such as prompt injection, obfuscation, or unauthorized persistence mechanisms were detected in the instructions or command examples.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 22, 2026, 01:14 PM