idealspot

Pass

Audited by Gen Agent Trust Hub on Apr 2, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the @membranehq/cli package via NPM, which is the official tool provided by the vendor for platform interaction.
  • [COMMAND_EXECUTION]: The skill uses shell commands (via the membrane CLI) to discover actions and interact with the IdealSpot API. This is the intended primary function of the skill.
  • [SAFE]: Authentication is handled through a secure OAuth-style flow (membrane login and membrane connect), ensuring that sensitive credentials like API keys are managed by the platform rather than being hardcoded or requested directly from the user.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 2, 2026, 09:30 AM