sf-deploy

Pass

Audited by Gen Agent Trust Hub on Mar 19, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill uses the official Salesforce CLI (sf) to manage project deployments, org authentication, and administrative tasks. These operations are restricted to the 'sf' namespace through the allowed-tools configuration and follow standard deployment patterns.
  • [EXTERNAL_DOWNLOADS]: The skill references the installation of @salesforce/cli and the sfdx-git-delta plugin, both of which are established and widely used tools within the Salesforce developer ecosystem.
  • [PROMPT_INJECTION]: The skill is designed to process project metadata and deployment error logs. This creates a surface for indirect prompt injection, although no specific exploits were found. (Ingestion points: Project metadata and CLI deployment reports; Boundary markers: None present; Capability inventory: Command execution via sf CLI and file system access; Sanitization: None described for metadata content).
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 19, 2026, 11:18 PM