commerce-b2b-open-code-components-integrate

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill clones the official B2B Commerce open-source components repository from https://github.com/forcedotcom/b2b-commerce-open-source-components. This is an official repository from the vendor (Salesforce) and is used for its intended purpose of providing integration components.
  • [COMMAND_EXECUTION]: Uses git clone, sf project retrieve, and cp to manage and integrate metadata. These operations are limited to standard Salesforce development workflows and the skill's specific purpose.
  • [DATA_EXPOSURE_AND_EXFILTRATION]: While the skill interacts with project metadata (Salesforce DigitalExperienceBundle), it does not transmit this data to any external third-party servers. All operations occur locally or between the user's local environment and their connected Salesforce org.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 12:29 AM
Security Audit — agent-trust-hub — commerce-b2b-open-code-components-integrate