line-liff-api

Pass

Audited by Gen Agent Trust Hub on Jul 25, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references the official LINE LIFF SDK via npm (@line/liff) and the official LINE CDN (https://static.line-scdn.net/liff/edge/2/sdk.js). These are well-known, trusted sources for the intended development purpose.
  • [DATA_EXFILTRATION]: The skill describes methods for accessing sensitive user data such as profiles and OIDC ID tokens (liff.getProfile, liff.getDecodedIDToken). It also includes specific security guidance to prevent accidental credential leakage to third-party analytics services, demonstrating a focus on safe implementation practices.
  • [COMMAND_EXECUTION]: No direct command execution or shell interaction patterns were detected. The skill focuses exclusively on client-side JavaScript SDK usage within web and in-app browser environments.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 25, 2026, 02:13 PM
Security Audit — agent-trust-hub — line-liff-api