thrivecart
Pass
Audited by Gen Agent Trust Hub on Apr 22, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill utilizes the vendor's official command-line interface (
@membranehq/cli) to interact with the Thrivecart API. All sensitive operations, including authentication and credential management, are handled by the Membrane platform rather than the skill itself. - [EXTERNAL_DOWNLOADS]: The skill instructs the user to install the
@membranehq/clipackage from the official npm registry. This is a standard procedure for using the vendor's tooling. - [COMMAND_EXECUTION]: The skill uses shell commands to invoke the
membraneCLI. These commands are used for legitimate purposes such as listing actions, connecting to services, and running API requests through a secure proxy.
Audit Metadata