woocommerce
Pass
Audited by Gen Agent Trust Hub on Apr 8, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides documentation and code examples for interacting with the official WooCommerce REST API.
- [CREDENTIALS_SAFE]: The skill correctly instructs users to store API keys in environment variables and provides regex patterns for credential detection in credentials.md, rather than including real secrets.
- [EXTERNAL_DOWNLOADS]: Dependencies listed (@woocommerce/woocommerce-rest-api for Node.js and woocommerce for Python) are the official libraries for the service.
- [DATA_EXFILTRATION]: No unauthorized data exfiltration patterns were detected. Network operations are strictly scoped to the configured WooCommerce store URL for CRUD operations on products, orders, and customers.
- [PROMPT_INJECTION]: No malicious prompt injection or behavior override instructions were found. The use of 'IMPORTANT' and 'CRITICAL' in the text refers to standard developer instructions and prerequisites.
Audit Metadata