salesforce-security-basics

Pass

Audited by Gen Agent Trust Hub on Mar 25, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides security best practices for Salesforce, including instructions for secure OAuth configuration, field-level security enforcement, and audit log monitoring. No malicious behavior or unsafe practices were detected.
  • [DATA_EXFILTRATION]: The skill correctly identifies the risks of credential exposure and provides instructions on using environment variables and .gitignore to prevent sensitive data from being committed to version control.
  • [CREDENTIALS_UNSAFE]: No hardcoded secrets were found. The skill uses descriptive placeholders and recommends storing actual secrets in a secure vault.
  • [COMMAND_EXECUTION]: The skill includes a standard sf CLI command to verify connection status. This is a common administrative task for Salesforce developers and is used safely here.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 25, 2026, 04:42 PM