skills/wix/skills/wix-base44-headless/Gen Agent Trust Hub

wix-base44-headless

Pass

Audited by Gen Agent Trust Hub on Aug 8, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill instructs the agent to use execSync to run npx -y skills add for installation and cpSync for template deployment. These operations are restricted to the local environment and are used to initialize the project structure.
  • [EXTERNAL_DOWNLOADS]: The skill facilitates interaction with www.wixapis.com via fetch to manage commerce data (products, services, orders). These are legitimate operations targeting a well-known service associated with the skill's author.
  • [REMOTE_CODE_EXECUTION]: The seeding logic employs a new Function wrapper to load and execute local JavaScript seed modules (seed-store.js and seed-bookings.js). While this pattern executes code dynamically, it is used to load scripts distributed within the skill's own package for project initialization.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 8, 2026, 10:09 AM
Security Audit — agent-trust-hub — wix-base44-headless