shopify-admin-gift-card-issuance

Pass

Audited by Gen Agent Trust Hub on Apr 12, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: Executes standard Shopify Admin API mutations (giftCardCreate) and queries (customers) through authorized Shopify toolkits. Access is governed by standard Shopify CLI authentication and defined API scopes.
  • [DATA_EXFILTRATION]: No unauthorized data transmission detected. All operations are directed to the user-specified Shopify store domain for legitimate administration tasks. No sensitive local file access patterns were identified.
  • [PROMPT_INJECTION]: The skill instructions do not contain patterns aimed at bypassing agent safety filters or overriding system instructions. The session tracking requirements are standard for auditability and structured logging.
  • [REMOTE_CODE_EXECUTION]: No remote code execution or untrusted dependency downloads were identified. The skill relies on native platform toolkits and structured GraphQL operations.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 12, 2026, 08:01 AM