Browser SDK and default widget for embedding Pluno Product Agent into customer web apps.
A running SDK can execute JavaScript supplied through its agent transport in the embedding page. It also intercepts non-excluded host browser traffic and forwards bounded metadata and text to Pluno.
Browser source reuses an authenticated session to collect identity data and mutate account settings while reporting externally.
dist/product-agent-widget.jsView on unpkg · L83A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/product-agent-runtime.cjs#virtual:string-array:round1View on unpkgThe SDK accepts remote execute_code tool events and evaluates supplied JavaScript in the host page.
dist/product-agent-sdk.jsView on unpkg · L11540The SDK accepts remote execute_code tool events and evaluates supplied JavaScript in the host page.
dist/product-agent-sdk.jsView on unpkg · L12129Initialization enables network capture by default, then sends batches of intercepted host request metadata and small textual bodies over its connected socket.
dist/product-agent-sdk.jsView on unpkg · L9875This report applies to @pluno/product-agent-web@0.1.272.
See version security history for other recorded verdicts.
Evidence last updated: .
Initialization enables network capture by default, then sends batches of intercepted host request metadata and small textual bodies over its connected socket.
dist/product-agent-sdk.jsView on unpkg · L11638The capture hook replaces shared fetch and XMLHttpRequest methods, creating a broad browser-data collection surface.
dist/product-agent-sdk.jsView on unpkg · L11853Browser source reuses an authenticated session to collect identity data and mutate account settings while reporting externally.
dist/product-agent-widget.jsView on unpkg · L83A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
dist/product-agent-runtime.cjs#virtual:string-array:round1View on unpkgThe SDK accepts remote execute_code tool events and evaluates supplied JavaScript in the host page.
dist/product-agent-sdk.jsView on unpkg · L11540The SDK accepts remote execute_code tool events and evaluates supplied JavaScript in the host page.
dist/product-agent-sdk.jsView on unpkg · L12129Initialization enables network capture by default, then sends batches of intercepted host request metadata and small textual bodies over its connected socket.
dist/product-agent-sdk.jsView on unpkg · L9875Initialization enables network capture by default, then sends batches of intercepted host request metadata and small textual bodies over its connected socket.
dist/product-agent-sdk.jsView on unpkg · L11638The capture hook replaces shared fetch and XMLHttpRequest methods, creating a broad browser-data collection surface.
dist/product-agent-sdk.jsView on unpkg · L11853