integration-astro-static
Pass
Audited by Gen Agent Trust Hub on Mar 28, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill defines a structured, legitimate process for adding analytics tracking to a project.
- [EXTERNAL_DOWNLOADS]: The provided integration snippet fetches the PostHog library from 'us.i.posthog.com', which is the official endpoint for the service and falls within the trusted vendor scope.
- [COMMAND_EXECUTION]: The integration workflow includes instructions for the agent to run project-specific maintenance scripts like linters or formatters on modified files as a quality check.
- [PROMPT_INJECTION]: The workflow requires the agent to read and process existing project source files. This represents an inherent surface for indirect prompt injection common to code-integration tasks, but the instructions are clearly scoped to identifying business events and integration points.
Audit Metadata