shopify-functions

Pass

Audited by Gen Agent Trust Hub on May 15, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is authored by Shopify and provides a legitimate environment for Shopify Function development. No malicious patterns, obfuscation, or unauthorized data access were detected.
  • [EXTERNAL_DOWNLOADS]: The scripts/search_docs.mjs script communicates with shopify.dev to retrieve developer documentation and report anonymized usage metadata. These operations are limited to official vendor-owned domains.
  • [COMMAND_EXECUTION]: The skill utilizes the bash tool to run local helper scripts and the official shopify CLI for extension scaffolding and building, which aligns with the stated purpose of the skill.
Audit Metadata
Risk Level
SAFE
Analyzed
May 15, 2026, 10:24 PM
Security Audit — agent-trust-hub — shopify-functions