shopware-cli-docker

Pass

Audited by Gen Agent Trust Hub on Sep 2, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: The skill instructs the agent to use shopware-cli, which is the official tool for managing Shopware projects. It provides clear safety guidelines, such as using the --help flag to inspect commands and verifying the active environment before performing potentially destructive actions.
  • [INDIRECT_PROMPT_INJECTION]: The skill describes processes that involve reading local project files to identify available scripts and configurations.
  • Ingestion points: The agent reads composer.json and .shopware-project.yml from the project directory.
  • Boundary markers: There are no explicit instructions for using delimiters when reading these files.
  • Capability inventory: The agent is guided to execute commands via shopware-cli, including Symfony console commands, Composer scripts, and database management tools.
  • Sanitization: The skill implements manual sanitization logic by instructing the agent to establish environment context and verify command behavior using help documentation before execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 2, 2026, 08:28 AM
Security Audit — agent-trust-hub — shopware-cli-docker