okf-viz
Pass
Audited by Gen Agent Trust Hub on Sep 2, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSOBFUSCATIONCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The generated HTML reports reference JavaScript visualization libraries from the jsDelivr CDN. These external references are pinned to specific versions and include Subresource Integrity (SRI) hashes to ensure the code has not been tampered with.
- [OBFUSCATION]: Static analysis heuristics flagged potential obfuscation in the minified JavaScript library
assets/vendor/cytoscape.min.js. This is a false positive common for large, optimized graph libraries and is not a security risk given the source reputation and integrity pinning. - [COMMAND_EXECUTION]: The skill documentation includes standard Go toolchain commands for building and installing the visualizer from the author's GitHub repository.
Audit Metadata