line-liff-api
Pass
Audited by Gen Agent Trust Hub on Jul 25, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill references the official LINE LIFF SDK via npm (
@line/liff) and the official LINE CDN (https://static.line-scdn.net/liff/edge/2/sdk.js). These are well-known, trusted sources for the intended development purpose. - [DATA_EXFILTRATION]: The skill describes methods for accessing sensitive user data such as profiles and OIDC ID tokens (
liff.getProfile,liff.getDecodedIDToken). It also includes specific security guidance to prevent accidental credential leakage to third-party analytics services, demonstrating a focus on safe implementation practices. - [COMMAND_EXECUTION]: No direct command execution or shell interaction patterns were detected. The skill focuses exclusively on client-side JavaScript SDK usage within web and in-app browser environments.
Audit Metadata