fingerprint-javascript

Pass

Audited by Gen Agent Trust Hub on Sep 26, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references the official Fingerprint CDN (fpjscdn.net) to download the device identification agent at runtime.
  • [REMOTE_CODE_EXECUTION]: The integration uses the @fingerprint/agent loader and CDN-based script imports which dynamically execute JavaScript code from the vendor's CDN to perform identification tasks.
  • [SAFE]: All external resources and packages are owned and operated by the official service provider (FingerprintJS). The skill correctly distinguishes between public and secret API keys, following security best practices for frontend service integration.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 26, 2026, 02:35 PM
Security Audit — agent-trust-hub — fingerprint-javascript