scopemaster

Pass

Audited by Gen Agent Trust Hub on Apr 21, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONREMOTE_CODE_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill downloads the official @membranehq/cli package from the public npm registry. This is a standard installation of the vendor's own tooling.
  • [COMMAND_EXECUTION]: The skill executes various membrane CLI commands to manage connections and interact with the ScopeMaster API. These operations are within the scope of the skill's documented purpose.
  • [REMOTE_CODE_EXECUTION]: The skill utilizes npx @membranehq/cli@latest to dynamically fetch and run the latest version of the vendor's integration discovery tool. This is a standard workflow for the Membrane platform and targets the author's own official software.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 21, 2026, 11:47 PM