go-upc

Pass

Audited by Gen Agent Trust Hub on Apr 26, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the agent to install the @membranehq/cli package using npm. This is a standard package installation from a well-known registry for the purpose of using the vendor's integration tooling.
  • [COMMAND_EXECUTION]: Provides commands for using the membrane CLI to perform login, search for connectors, and run actions. These operations are restricted to the scope of the Membrane platform and are used to manage the lifecycle of the Go-UPC integration.
  • [DATA_EXFILTRATION]: No evidence of unauthorized data transfer. The skill emphasizes using the Membrane proxy for API requests, which manages authentication headers and session tokens server-side to prevent credential exposure.
  • [SAFE]: The instructions explicitly advise against asking users for API keys, promoting the use of managed connections for improved security and credential management.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 26, 2026, 10:48 PM