commerce-b2b-open-code-components-replace

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security issues were detected. The skill follows best practices for AI agent safety, including requiring explicit user confirmation before any file modifications.
  • [SAFE]: The scope of operation is restricted to the local project directory, specifically targeting Salesforce DX metadata files (content.json).
  • [SAFE]: The skill uses a local, static mapping file (assets/ootb-to-open-code-mapping.json) as the authoritative source for transformations, preventing the generation of arbitrary or malicious component definitions.
  • [SAFE]: Allowed tools are limited to basic discovery (grep, ls) and JSON manipulation (Read, Write), with no network access requested.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 12:29 AM
Security Audit — agent-trust-hub — commerce-b2b-open-code-components-replace