experience-ui-bundle-features-generate
Pass
Audited by Gen Agent Trust Hub on Sep 19, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill uses
npxto download and execute the@salesforce/ui-bundle-featurespackage. This is a vendor-owned tool from Salesforce used for the skill's primary functionality of feature installation. - [COMMAND_EXECUTION]: The skill executes several shell-based workflows to manage the development environment:
- Runs a local verification script
scripts/verify-react-bundle.shto check for React dependencies. - Executes
npm viewandnpxcommands to interact with the Salesforce UI bundle features catalog. - Uses
findandgrepto locate and verify integrated patterns. - Performs file system operations including
rm -rf __examples__/for post-installation cleanup and moving metadata files from placeholders. - [INDIRECT_PROMPT_INJECTION]: The skill is instructed to read the README of the installed npm package (
npm view <package> readme) to determine integration steps. This creates an attack surface where a compromised or malicious package could provide instructions that influence the agent's actions. - Ingestion points: README content from
npm view @salesforce/ui-bundle-features. - Boundary markers: Absent; the agent is told to treat the README as a "contract" for wiring.
- Capability inventory: The agent has capabilities to execute shell commands, modify files, and delete directories.
- Sanitization: No sanitization or validation of the README content is performed before processing.
Audit Metadata