Browser SDK and default widget for embedding Pluno Product Agent into customer web apps.
At runtime the SDK monitors browser traffic and accepts remote browser-tool calls. A received code tool call can execute JavaScript in the embedding page and return its output.
Browser source reuses an authenticated session to collect identity data and mutate account settings while reporting externally.
dist/product-agent-widget.jsView on unpkg · L83A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/product-agent-runtime.cjs#virtual:string-array:round1View on unpkgThe SDK accepts execute_code tool calls and runs supplied JavaScript with AsyncFunction in the host page.
dist/product-agent-sdk.jsView on unpkg · L11514The SDK accepts execute_code tool calls and runs supplied JavaScript with AsyncFunction in the host page.
dist/product-agent-sdk.jsView on unpkg · L12089Initialization enables fetch/XHR traffic capture by default and sends captured batches over its connected transport.
This report applies to @pluno/product-agent-web@0.1.269.
See version security history for other recorded verdicts.
Evidence last updated: .
Initialization enables fetch/XHR traffic capture by default and sends captured batches over its connected transport.
dist/product-agent-sdk.jsView on unpkg · L11604Browser source reuses an authenticated session to collect identity data and mutate account settings while reporting externally.
dist/product-agent-widget.jsView on unpkg · L83A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/product-agent-runtime.cjs#virtual:string-array:round1View on unpkgThe SDK accepts execute_code tool calls and runs supplied JavaScript with AsyncFunction in the host page.
dist/product-agent-sdk.jsView on unpkg · L11514The SDK accepts execute_code tool calls and runs supplied JavaScript with AsyncFunction in the host page.
dist/product-agent-sdk.jsView on unpkg · L12089Initialization enables fetch/XHR traffic capture by default and sends captured batches over its connected transport.
Initialization enables fetch/XHR traffic capture by default and sends captured batches over its connected transport.
dist/product-agent-sdk.jsView on unpkg · L11604