commerce-b2b-open-code-components-replace
Pass
Audited by Gen Agent Trust Hub on Aug 19, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues were detected. The skill follows best practices for AI agent safety, including requiring explicit user confirmation before any file modifications.
- [SAFE]: The scope of operation is restricted to the local project directory, specifically targeting Salesforce DX metadata files (
content.json). - [SAFE]: The skill uses a local, static mapping file (
assets/ootb-to-open-code-mapping.json) as the authoritative source for transformations, preventing the generation of arbitrary or malicious component definitions. - [SAFE]: Allowed tools are limited to basic discovery (grep, ls) and JSON manipulation (Read, Write), with no network access requested.
Audit Metadata