shopify-onboarding-dev

Pass

Audited by Gen Agent Trust Hub on May 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill facilitates the installation of the @shopify/cli package from the official NPM registry and the shopify-cli via the author's official Homebrew tap. These are legitimate resources owned by the vendor.
  • [EXTERNAL_DOWNLOADS]: For environments like VS Code and Gemini CLI, the skill directs the agent to install extensions directly from the official Shopify GitHub repository (https://github.com/Shopify/Shopify-AI-Toolkit).
  • [COMMAND_EXECUTION]: The skill uses shell commands to detect the environment, check for existing software versions, and execute package manager commands (npm, yarn, pnpm, bun, or brew) to perform necessary installations.
Audit Metadata
Risk Level
SAFE
Analyzed
May 16, 2026, 12:05 AM
Security Audit — agent-trust-hub — shopify-onboarding-dev