platform-data-and-tooling-api-context-get

Pass

Audited by Gen Agent Trust Hub on Aug 19, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides authoritative field and schema metadata for over 2000 Salesforce objects using local JSON asset files provided within the skill package.
  • [SAFE]: A mandatory verification gate is implemented, requiring the agent to lookup fields in both primary and reference catalogs before answering, which significantly reduces the risk of hallucination or incorrect query generation.
  • [SAFE]: The skill utilizes standard system tools (jq, sf, node, python3) to interact with local assets and the Salesforce CLI, which are appropriate and necessary for its functional scope.
  • [SAFE]: The design emphasizes section-specific data consumption via jq to minimize token usage and maintain focus on relevant metadata.
  • [SAFE]: All included descriptions and usage examples are consistent with official Salesforce documentation and represent legitimate platform functionality.
  • [SAFE]: While the skill can ingest metadata from a live Salesforce organization (via sf describe), this is the primary intended purpose of the skill and does not introduce unauthorized data exposure or exfiltration risks within the context of Salesforce administration.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 19, 2026, 10:36 AM
Security Audit — agent-trust-hub — platform-data-and-tooling-api-context-get