dx-org-analyze

Pass

Audited by Gen Agent Trust Hub on Sep 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security threats detected. The skill performs read-only operations on Salesforce orgs using official CLI tools and public APIs. Command execution via Python's subprocess module is handled securely using argument lists and without invoking a shell, preventing command injection. Data collection is properly scoped to Salesforce instance URLs obtained from the user's local Salesforce CLI authentication context. The workflow is well-documented and adheres to the principle of least privilege by focusing on metadata auditing and comparison.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 19, 2026, 04:22 PM
Security Audit — agent-trust-hub — dx-org-analyze