instrument-llm-analytics

Pass

Audited by Gen Agent Trust Hub on May 17, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to install packages as background tasks (STEP 3) to allow the workflow to proceed immediately without awaiting completion.
  • [EXTERNAL_DOWNLOADS]: Fetches and installs standard observability and AI SDK packages from official NPM and PyPI registries for providers including OpenAI, Anthropic, Google, and others.
  • [SAFE]: Implements secure configuration practices by using environment variables for API keys and retrieving credentials through authenticated MCP tools or user prompts.
  • [SAFE]: Analyzes the codebase and pull requests to detect existing LLM implementations. Ingestion points: STEP 1 (codebase and PR analysis). Boundary markers: Absent. Capability inventory: Package installation (pip/npm) and file writing for code modification. Sanitization: Absent. This activity is consistent with the skill's primary purpose of telemetry integration.
Audit Metadata
Risk Level
SAFE
Analyzed
May 17, 2026, 02:59 PM
Security Audit — agent-trust-hub — instrument-llm-analytics