salesforce-local-dev-loop

Pass

Audited by Gen Agent Trust Hub on Mar 25, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides instructions for configuring a Salesforce development environment using the official Salesforce CLI (sf), jsforce, and vitest. The practices described, such as using .env.local for secrets and standard SFDX project structures, align with security best practices.
  • [EXTERNAL_DOWNLOADS]: The skill references installation of the official @salesforce/cli and common Node.js development dependencies like jsforce, vitest, and tsx. These are well-known packages from established registries.
  • [COMMAND_EXECUTION]: The skill uses the Bash tool to execute sf, npm, and pnpm commands. These are restricted to specific subcommands and are used as intended for project initialization, org management, and testing within the Salesforce ecosystem.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 25, 2026, 04:41 PM