langfuse-prod-checklist
Pass
Audited by Gen Agent Trust Hub on Jul 21, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides legitimate documentation and code samples for integrating Langfuse observability into a production environment. No malicious patterns or bypass attempts were detected.
- [DATA_EXFILTRATION]: The provided scripts access
LANGFUSE_PUBLIC_KEYandLANGFUSE_SECRET_KEYfrom environment variables. This is documented as a necessary step for verifying configuration and testing connectivity to the official Langfuse API service. - [EXTERNAL_DOWNLOADS]: The skill references and utilizes official Node.js packages from Langfuse and OpenTelemetry (@langfuse/otel, @langfuse/client, @langfuse/tracing, @opentelemetry/sdk-node) which are well-known libraries for the service's functionality.
Audit Metadata