Shell command execution detected (child_process).
Critical
- Code
- suspicious.dangerous_exec
- Location
- scripts/search.mjs:86
Security audit
Security checks for vulnerabilities and agentic risk
This skill coherently performs product search through Shopify's UCP CLI and does not show hidden purchasing, credential theft, destructive behavior, or unrelated access.
Before installing, understand that searches will be sent through the Shopify UCP CLI and that the first run may download that CLI with npx if it is not already installed. Use it for product research, not purchasing, and avoid entering sensitive information into product search queries.
Detected: suspicious.dangerous_exec