bc-headless
Pass
Audited by Gen Agent Trust Hub on Mar 31, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill instructs the agent to fetch documentation from official sources, including catalyst.dev and BigCommerce developer guides. While this introduces an external data ingestion point, it is restricted to trusted domains for documentation purposes.\n- [SAFE]: Project setup is performed via the official create-catalyst-storefront package runner, which is a standard and expected practice for this ecosystem.\n- [SAFE]: Security best practices are followed for credential management by instructing the user to use environment variables and providing safe placeholders instead of hardcoded secrets.
Audit Metadata