mirror of
https://github.com/Shopify/Shopify-AI-Toolkit.git
synced 2026-09-18 09:41:58 +08:00
c3da245fb8
Adds skills/shopify-flow as a peer to shopify-admin / shopify-use-shopify-cli. The skill drives Shopify Flow tools through the Shopify CLI (`shopify flow tool call`) via a thin scripts/call_tool.mjs wrapper, keeping backend routing (Flow vs SK) hidden from agents. Op catalog under ops/, reference docs under skills/. Also surfaces Flow tooling in the four plugin/marketplace manifests (.claude-plugin, .codex-plugin, .cursor-plugin, plugin.json), package.json, and README so the new skill is discoverable across all install surfaces. Adds flow/workflows/automation keywords and a Flow example prompt for Codex. Drops the --endpoint flag from skills/shopify-flow/scripts/call_tool.mjs. The wrapper is the agent-facing surface; letting an LLM redirect tool calls to arbitrary URLs is a prompt-injection / token-exfil risk. The override remains available at the CLI layer (shopify flow tool call --endpoint) and via SHOPIFY_FLOW_TOOL_CALL_ENDPOINT for human dev work.
466 B
466 B