weavr

Pass

Audited by Gen Agent Trust Hub on Apr 22, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill utilizes the official @membranehq/cli package from the NPM registry to provide its core functionality. This is the standard distribution method for the vendor's tools.
  • [COMMAND_EXECUTION]: All documented shell commands (membrane action, membrane connect, etc.) are part of the intended integration workflow for managing financial data and workflows through the Membrane platform.
  • [CREDENTIALS_UNSAFE]: The skill explicitly promotes secure secret management by instructing the user to use the platform's built-in authentication mechanisms (membrane login) rather than handling raw API keys or tokens directly.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 22, 2026, 06:51 AM