firebase-admin-sdk
Pass
Audited by Gen Agent Trust Hub on Apr 22, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill instructs the user to install the
@membranehq/clipackage. This is a vendor-owned resource belonging to the skill's author (membranedev) and is used for its intended purpose of managing platform connections. - [SAFE]: Authentication is handled server-side through the
membrane connectworkflow. The skill explicitly discourages asking users for API keys or tokens, which reduces the risk of credential exposure. - [SAFE]: Network operations are conducted via the
membrane requestproxy. This centralized approach allows for controlled API interactions and transparent credential refreshing without exposing secrets to the local environment. - [SAFE]: No malicious patterns such as prompt injection, obfuscation, or unauthorized persistence mechanisms were detected in the instructions or command examples.
Audit Metadata