feature-flags-react
Pass
Audited by Gen Agent Trust Hub on Mar 28, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides legitimate documentation and code snippets for integrating PostHog feature flags into applications.
- [SAFE]: All referenced domains (posthog.com) and software packages (@posthog/react, posthog-js) are official vendor resources belonging to the skill author.
- [SAFE]: The instructions explicitly guide the user to use environment variables for sensitive API tokens (e.g., PH_PROJECT_TOKEN) rather than hardcoding them, adhering to security best practices.
- [SAFE]: No malicious patterns such as prompt injection, data exfiltration, or obfuscation were found within the skill files.
Audit Metadata