shopify

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • [Prompt Injection] (SAFE): No malicious override or bypass instructions were detected in the skill's prompts or documentation.
  • [Data Exposure & Exfiltration] (SAFE): Analysis found no hardcoded credentials, sensitive file access, or unauthorized external data transmission.
  • [Obfuscation] (SAFE): No hidden or encoded content, such as Base64 or zero-width characters, was found in the skill content.
  • [Unverifiable Dependencies & Remote Code Execution] (SAFE): The skill references legitimate dependencies including official Shopify CLI tools and standard Python testing libraries.
  • [Indirect Prompt Injection] (SAFE): The documentation includes guidelines for secure data handling, such as webhook signature verification and OAuth, reducing risk from external data ingestion.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:35 PM