shopify-inventory-management

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: No security issues were detected. The skill is entirely composed of documentation and instructional markdown designed to guide the AI assistant's responses.
  • [EXTERNAL_DOWNLOADS]: The skill mentions an installation command using npx to add resources from the vendor's repository (nexscope-ai/eCommerce-Skills). This represents standard platform functionality for the vendor's own skill set.
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and analyze user-provided information about Shopify stores. However, since the skill does not have any executable capabilities (no file writes, network operations, or tool invocations), there is no pathway for an injection to result in malicious actions.
  • [NO_CODE]: The skill payload does not include any Python scripts, Node.js code, or executable binaries.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 10:53 AM
Security Audit — agent-trust-hub — shopify-inventory-management