shopify-admin-agentic-llms-txt

Pass

Audited by Gen Agent Trust Hub on Jun 20, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No malicious patterns, obfuscation, or unauthorized data access were detected. The skill performs its stated purpose using standard Shopify Admin API toolkits.
  • [COMMAND_EXECUTION]: The skill executes GraphQL operations (shop, products, themeFilesUpsert) through the shopify-admin toolkit. These actions are scoped to the authenticated session and are required for the skill's functionality.
  • [INDIRECT_PROMPT_INJECTION]: The skill creates an attack surface by ingesting external data (product descriptions and shop details) and interpolating them into a generated file. However, as the skill does not execute this data and defaults to a dry_run mode for user review, the risk is negligible.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 20, 2026, 10:05 AM
Security Audit — agent-trust-hub — shopify-admin-agentic-llms-txt