experience-ui-bundle-localize

Pass

Audited by Gen Agent Trust Hub on Aug 7, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes local shell scripts to perform environment checks and code analysis.\n
  • Evidence: The skill executes check-org-api-version.sh which uses the official sf CLI to query the target org's API version via standard REST API endpoints.\n
  • Evidence: Helper scripts such as check-i18n-wired.sh and check-manifest-registered.sh use standard Unix utilities (grep, awk, sed) to perform static analysis on the project source code for verification purposes.\n- [EXTERNAL_DOWNLOADS]: The skill recommends installing well-known libraries from the NPM registry.\n
  • Evidence: Users are instructed to install i18next, react-i18next, and associated backend plugins, which are standard, widely-used libraries in the React ecosystem.\n- [SAFE]: No malicious patterns such as prompt injection, persistence mechanisms, or data exfiltration were found. The skill operates as a legitimate developer utility for the Salesforce platform and follows security best practices.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 7, 2026, 04:57 PM
Security Audit — agent-trust-hub — experience-ui-bundle-localize