shopify
Pass
Audited by Gen Agent Trust Hub on Aug 6, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill actively promotes security best practices, such as instructing the agent to use Liquid filters like
| escape,| money, and| jsonto prevent cross-site scripting (XSS) and ensuring that sensitive API credentials are kept in environment variables rather than committed to configuration files. - [COMMAND_EXECUTION]: Includes a utility script
scripts/verify.shdesigned to perform advisory quality scans. This script uses standard Unix tools (find,grep,sed) to search for deprecated Shopify patterns in the local directory. It is diagnostic in nature and does not perform network operations or access sensitive system files like SSH keys or environment configs. - [EXTERNAL_DOWNLOADS]: The skill references official Shopify development tools, such as the Shopify CLI (4.x) and reputable library packages under the
@shopifyscope on NPM. These are established, well-known resources provided by a trusted technology vendor.
Audit Metadata