shopify-admin-staff-account-audit
Pass
Audited by Gen Agent Trust Hub on Jun 20, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill is strictly read-only and uses GraphQL queries to fetch staff member metadata. It contains no mutation operations that could modify the Shopify store state.
- [SAFE]: Data access is limited to staff account metadata (names, emails, last login dates) required for the stated purpose of a security audit.
- [SAFE]: No evidence of prompt injection, obfuscation, or persistence mechanisms was found.
- [SAFE]: The skill does not perform external network operations or download third-party dependencies. All operations are conducted within the authenticated Shopify CLI environment.
Audit Metadata