shopify-expert
Pass
Audited by Gen Agent Trust Hub on Feb 17, 2026
Risk Level: SAFE
Full Analysis
- PROMPT_INJECTION (SAFE): Analysis of the skill instructions found no attempts to override agent behavior, bypass safety guidelines, or extract system prompts.
- CREDENTIALS_UNSAFE (SAFE): The skill includes positive security constraints, explicitly directing the agent not to hardcode API credentials or store sensitive data in metafields without encryption.
- DATA_EXFILTRATION (SAFE): There are no indicators of unauthorized file access, network requests to untrusted domains, or patterns suggesting data exfiltration.
- EXTERNAL_DOWNLOADS (SAFE): The skill does not perform any external package installations or remote code downloads. It references local documentation files for additional context.
Audit Metadata