vtex-io-react-apps
Pass
Audited by Gen Agent Trust Hub on Apr 6, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill enforces security best practices by discouraging the use of direct API calls (e.g., via
fetchoraxios) from the browser, which prevents the exposure of sensitive authentication tokens to the client. It recommends using GraphQL queries that resolve server-side. - [SAFE]: All identified external dependencies and component libraries, such as
vtex.styleguide,vtex.css-handles, andvtex.product-context, are official vendor-provided resources for the VTEX IO platform. - [SAFE]: The documentation links provided in the reference section point to official and trusted domains:
developers.vtex.comandstyleguide.vtex.com. - [SAFE]: The skill does not contain any patterns associated with prompt injection, data exfiltration, obfuscation, or unauthorized command execution.
Audit Metadata