signoz-otel
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides standard implementation templates for OpenTelemetry and SigNoz without any malicious instructions. It focuses on setting up tracing, logging, and metrics for Node.js applications.
- [DATA_EXPOSURE]: The skill facilitates sending telemetry data to a user-defined endpoint. It proactively includes security best-practice advice to use only non-PII context in span attributes, which helps prevent accidental data leakage.
- [INDIRECT_PROMPT_INJECTION]: The skill implements instrumentation for external services like HTTP and databases. While this creates a surface where the agent might process untrusted data (logs/spans containing external inputs), the skill includes mandatory evidence factors such as guidance on attribute sanitization and the use of standard OpenTelemetry SDKs, which reduces the severity of this risk.
Audit Metadata