shopify-developer

Pass

Audited by Gen Agent Trust Hub on Feb 16, 2026

Risk Level: LOWEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS] (LOW): The skill documentation recommends the installation of official Shopify development packages such as @shopify/cli and @shopify/hydrogen via npm. Although these are industry-standard tools for the platform, the shopify organization is not explicitly included in the trusted source whitelist.
  • [COMMAND_EXECUTION] (INFO): The provided reference files contain numerous examples of CLI commands (e.g., shopify theme dev, shopify app deploy, npx shopify hydrogen init) used for standard Shopify development and deployment workflows.
Audit Metadata
Risk Level
LOW
Analyzed
Feb 16, 2026, 08:56 AM