experience-ui-bundle-features-generate

Pass

Audited by Gen Agent Trust Hub on Sep 19, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill uses npx to download and execute the @salesforce/ui-bundle-features package. This is a vendor-owned tool from Salesforce used for the skill's primary functionality of feature installation.
  • [COMMAND_EXECUTION]: The skill executes several shell-based workflows to manage the development environment:
  • Runs a local verification script scripts/verify-react-bundle.sh to check for React dependencies.
  • Executes npm view and npx commands to interact with the Salesforce UI bundle features catalog.
  • Uses find and grep to locate and verify integrated patterns.
  • Performs file system operations including rm -rf __examples__/ for post-installation cleanup and moving metadata files from placeholders.
  • [INDIRECT_PROMPT_INJECTION]: The skill is instructed to read the README of the installed npm package (npm view <package> readme) to determine integration steps. This creates an attack surface where a compromised or malicious package could provide instructions that influence the agent's actions.
  • Ingestion points: README content from npm view @salesforce/ui-bundle-features.
  • Boundary markers: Absent; the agent is told to treat the README as a "contract" for wiring.
  • Capability inventory: The agent has capabilities to execute shell commands, modify files, and delete directories.
  • Sanitization: No sanitization or validation of the README content is performed before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 19, 2026, 04:23 PM
Security Audit — agent-trust-hub — experience-ui-bundle-features-generate