ninox
Pass
Audited by Gen Agent Trust Hub on Apr 23, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the
@membranehq/clipackage via NPM. This is a standard dependency for the Membrane ecosystem and is provided by the vendor to facilitate integration. - [COMMAND_EXECUTION]: The instructions involve executing various
membraneCLI commands for authentication, action discovery, and data manipulation within Ninox. These operations are within the expected functional scope of the skill. - [CREDENTIALS_UNSAFE]: Security best practices are explicitly encouraged by advising against asking users for API keys and instead using server-side connection management for authentication.
- [DATA_EXFILTRATION]: While the skill performs network requests to the Ninox API via a proxy, these actions are intended for data management as part of the primary integration purpose and do not show signs of unauthorized exfiltration.
Audit Metadata