product-lifecycle-manager

Pass

Audited by Gen Agent Trust Hub on Apr 12, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is designed for bulk updating Shopify product statuses (DRAFT, ACTIVE, ARCHIVED). It utilizes the shopify-admin and shopify-admin-execution toolkits to perform GraphQL queries and mutations.
  • [COMMAND_EXECUTION]: The skill provides instructions for authenticating via the Shopify CLI (shopify store auth), which is a standard and safe procedure for interacting with Shopify's API. No unauthorized or suspicious command execution patterns were found.
  • [DATA_EXFILTRATION]: No evidence of unauthorized data transmission was detected. The skill generates a local CSV file for logging changes, which is a common practice for auditing bulk operations.
  • [PROMPT_INJECTION]: The instructions are clear and focused on the stated functionality. No patterns attempting to bypass safety filters or override system behavior were identified.
  • [EXTERNAL_DOWNLOADS]: The skill does not perform any external downloads or execute remote scripts.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 12, 2026, 04:13 AM