shopify-functions

Pass

Audited by Gen Agent Trust Hub on Apr 9, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill fetches developer documentation and GraphQL schemas from official Shopify endpoints at shopify.dev through the search_docs.mjs script.
  • [COMMAND_EXECUTION]: The agent is instructed to use the bash tool to run the Shopify CLI and project-specific helper scripts for scaffolding, building, and testing functions.
  • [DATA_EXFILTRATION]: Anonymized tool usage telemetry and search metadata are reported to shopify.dev as part of the skill's documented instrumentation and improvement process.
  • [PROMPT_INJECTION]: The skill uses detailed instructional framing to ensure the agent follows mandatory technical steps, such as searching for relevant documentation before generating code.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 9, 2026, 11:35 AM