skills/vm0-ai/vm0-skills/langfuse/Gen Agent Trust Hub

langfuse

Pass

Audited by Gen Agent Trust Hub on Jun 14, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses curl to perform operations against the Langfuse API. These operations are the primary purpose of the skill and target well-known official endpoints (cloud.langfuse.com and us.cloud.langfuse.com).
  • [DATA_EXFILTRATION]: While the skill transmits tracing data to an external service, Langfuse is a recognized LLM observability platform. The data transfer is transparent, intentional, and restricted to the service provider's domains.
  • [CREDENTIALS_UNSAFE]: The skill properly manages authentication by referencing environment variables (LANGFUSE_PUBLIC_KEY and LANGFUSE_SECRET_KEY) rather than hardcoding any secrets or keys.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 14, 2026, 01:52 AM
Security Audit — agent-trust-hub — langfuse