bc-setup
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill instructs the installation of
@bigcommerce/stencil-cliand usesnpx create-catalyst-storefront. These are official packages provided by BigCommerce for its development ecosystem. - [COMMAND_EXECUTION]: The skill provides various shell commands for theme development and project setup, such as
stencil init,stencil start, andnpx create-catalyst-storefront. - [INDIRECT_PROMPT_INJECTION]: The skill exposes a vulnerability surface where external content is ingested and processed by an agent with significant system capabilities.
- Ingestion points: The skill explicitly instructs the agent to fetch documentation from
docs.bigcommerce.comand perform web searches for CLI setup steps. - Boundary markers: No explicit delimiters or instructions are provided to the agent to ignore potentially malicious instructions embedded in the fetched documentation.
- Capability inventory: The skill is granted access to
Bash,Write,Edit,Glob, andGreptools, allowing for significant system modification. - Sanitization: There is no evidence of content sanitization or validation of the external data fetched during the setup process.
Audit Metadata