shopify-admin-marketing-consent-report
Pass
Audited by Gen Agent Trust Hub on Apr 12, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill's behavior is consistent with its stated purpose as a read-only audit tool for customer operations. It queries marketing consent fields via GraphQL and summarizes the results.\n- [DATA_EXFILTRATION]: While the skill accesses customer PII (email addresses), it does so as a core part of the audit functionality. The data is stored in a local CSV file and is not transmitted to any external or unauthorized domains.\n- [COMMAND_EXECUTION]: The skill references standard Shopify CLI authentication commands in the prerequisites section. These are standard developer operations required for authorized access to the store's API.
Audit Metadata