bc-setup

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs the installation of @bigcommerce/stencil-cli and uses npx create-catalyst-storefront. These are official packages provided by BigCommerce for its development ecosystem.
  • [COMMAND_EXECUTION]: The skill provides various shell commands for theme development and project setup, such as stencil init, stencil start, and npx create-catalyst-storefront.
  • [INDIRECT_PROMPT_INJECTION]: The skill exposes a vulnerability surface where external content is ingested and processed by an agent with significant system capabilities.
  • Ingestion points: The skill explicitly instructs the agent to fetch documentation from docs.bigcommerce.com and perform web searches for CLI setup steps.
  • Boundary markers: No explicit delimiters or instructions are provided to the agent to ignore potentially malicious instructions embedded in the fetched documentation.
  • Capability inventory: The skill is granted access to Bash, Write, Edit, Glob, and Grep tools, allowing for significant system modification.
  • Sanitization: There is no evidence of content sanitization or validation of the external data fetched during the setup process.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 06:33 PM