opentelemetry-js

Pass

Audited by Gen Agent Trust Hub on Mar 19, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONDATA_EXFILTRATION
Full Analysis
  • [SAFE]: The skill provides high-quality guidance for OpenTelemetry instrumentation with a significant focus on security and data hygiene, explicitly recommending the redaction of tokens, secrets, and personal data from telemetry signals.
  • [EXTERNAL_DOWNLOADS]: The skill references official documentation and repositories from the OpenTelemetry project (opentelemetry.io and github.com/open-telemetry). These are well-known, trusted sources for observability tools and standards.
  • [COMMAND_EXECUTION]: Includes standard validation commands using node and curl. These are intended for local verification of the telemetry setup and connectivity to a local OTLP collector (localhost:4318), which is a common and safe development practice.
  • [DATA_EXFILTRATION]: Contains explicit instructions to avoid exporting sensitive payload fields and to ensure telemetry transport is encrypted, demonstrating a proactive approach to preventing data leakage.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 19, 2026, 11:53 AM
Security Audit — agent-trust-hub — opentelemetry-js