veriphone

Pass

Audited by Gen Agent Trust Hub on Apr 22, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Recommends the installation of the @membranehq/cli package from the NPM registry. This is the official command-line interface for the Membrane platform, provided by the skill author, and is necessary for the skill's integration functionality.
  • [COMMAND_EXECUTION]: Uses the membrane CLI to perform operations such as authentication, action discovery, and execution. These commands are used as intended for service interaction and do not involve unauthorized privilege escalation or persistence mechanisms.
  • [DATA_EXFILTRATION]: Communicates with veriphone.io and getmembrane.com to validate phone numbers and manage integration state. These network operations are limited to the official domains required for the skill's documented purpose.
  • [CREDENTIALS_UNSAFE]: Employs secure credential management by delegating authentication to the Membrane platform. The instructions explicitly advise against requesting API keys directly from users, adhering to the principle of least privilege for local environments.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 22, 2026, 05:10 PM