implementing-webapp-file-upload
Pass
Audited by Gen Agent Trust Hub on Mar 26, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill instructs the use of official Node.js packages from the @salesforce scope, including @salesforce/webapp-template-feature-react-file-upload-experimental and @salesforce/sdk-data. These are legitimate resources provided by the vendor (forcedotcom) for integration with Salesforce services.
- [SAFE]: No malicious patterns such as prompt injection, hardcoded credentials, or unauthorized data exfiltration were detected. The skill promotes best practices by recommending official APIs over custom XHR or FormData implementations.
- [SAFE]: Network operations described in the skill are restricted to Salesforce's legitimate integration endpoints via the provided SDKs, posing no risk of unauthorized data exfiltration to external malicious domains.
Audit Metadata