workleap-telemetry

Pass

Audited by Gen Agent Trust Hub on May 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides documentation for an observability and analytics library. All external destinations mentioned (Honeycomb, LogRocket, Mixpanel) are well-known technology services, and the documentation includes placeholders for all sensitive configuration fields such as API keys and application IDs.
  • [SAFE]: The skill includes explicit instructions and rules for protecting user privacy. It mandates the use of privacy-enhancing HTML attributes (data-public, data-private) to prevent sensitive user information (PII) from being captured in session replays.
  • [SAFE]: The configuration options documented follow security best practices, such as recommending the use of an OpenTelemetry proxy instead of direct API keys in client-side code to improve the security posture of the telemetry pipeline.
Audit Metadata
Risk Level
SAFE
Analyzed
May 20, 2026, 09:33 PM
Security Audit — agent-trust-hub — workleap-telemetry