make-commerce
Pass
Audited by Gen Agent Trust Hub on Apr 23, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [SAFE]: The skill utilizes the
@membranehq/clipackage, which is the official command-line tool for the Membrane platform. Documentation links and repositories point to official vendor sources. - [SAFE]: The instructions explicitly follow security best practices by advising the agent to never ask for user API keys or tokens, instead using Membrane's internal connection management.
- [COMMAND_EXECUTION]: The skill requires the agent to execute shell commands via the
membraneCLI to manage connections, discover actions, and run integration logic. - [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the
@membranehq/clipackage from the official npm registry.
Audit Metadata