whoson
Pass
Audited by Gen Agent Trust Hub on Apr 21, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill utilizes the official
@membranehq/clifor all interactions, which is a verified package managed by the skill's author. - [SAFE]: Authentication is performed through the platform's native login flow (
membrane login), which avoids the exposure of long-lived credentials or secrets within the skill's code or environment. - [SAFE]: The skill explicitly discourages the manual handling of API keys and tokens, directing users toward the platform's managed connection system to reduce the risk of credential leakage.
- [SAFE]: No suspicious patterns such as obfuscation, unauthorized network requests, or privilege escalation were detected.
Audit Metadata