Files
Gasser Aly c3da245fb8 Add shopify-flow skill
Adds skills/shopify-flow as a peer to shopify-admin / shopify-use-shopify-cli.
The skill drives Shopify Flow tools through the Shopify CLI (`shopify flow tool call`)
via a thin scripts/call_tool.mjs wrapper, keeping backend routing (Flow vs SK)
hidden from agents. Op catalog under ops/, reference docs under skills/.

Also surfaces Flow tooling in the four plugin/marketplace manifests
(.claude-plugin, .codex-plugin, .cursor-plugin, plugin.json), package.json,
and README so the new skill is discoverable across all install surfaces.
Adds flow/workflows/automation keywords and a Flow example prompt for Codex.

Drops the --endpoint flag from skills/shopify-flow/scripts/call_tool.mjs.
The wrapper is the agent-facing surface; letting an LLM redirect tool calls
to arbitrary URLs is a prompt-injection / token-exfil risk. The override
remains available at the CLI layer (shopify flow tool call --endpoint) and
via SHOPIFY_FLOW_TOOL_CALL_ENDPOINT for human dev work.
2026-05-11 13:52:01 -04:00

466 B