shopify-development
Build Shopify Apps, Extensions, and Themes
Shopify development spans apps, extensions, APIs, themes, and compliance details. This skill gives Claude, Codex, and Claude Code focused patterns for real Shopify work.
Stop for confirmation before installing.
Review the plan and obtain explicit user consent before changing files.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "shopify-development" from https://skillstore.io/skills/sickn33-shopify-development.md and its manifest at https://skillstore.io/api/skills/sickn33-shopify-development/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "shopify-development". User asks how to add a gift message to checkout.
Expected outcome:
The skill recommends a checkout UI extension, identifies the target, lists required state, and describes attribute update behavior.
Using "shopify-development". User asks how to sync products from Shopify.
Expected outcome:
The skill outlines GraphQL product queries, pagination, scopes, rate limit handling, and webhook updates for changed products.
Using "shopify-development". User asks how to customize a product page.
Expected outcome:
The skill suggests Liquid section and snippet changes, product form considerations, image handling, and theme preview steps.
Security Audit
High RiskMost static findings are documentation or test false positives from Markdown backticks, Liquid syntax, placeholder URLs, and dummy credentials. The real risks are in optional helper scripts that read local credentials, load parent .env files, write API keys into generated configuration, and send access tokens to a caller-controlled Shopify host.
Confirmed security concerns (15)
Show all 15 confirmed findings
Capability review items (28)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
โ๏ธ External commands (56)
๐ Network access (28)
๐ Env variables (56)
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/sickn33-shopify-development/audits/5?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/sickn33-shopify-development?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/sickn33-shopify-development?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/sickn33-shopify-development/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/sickn33-shopify-development.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA ยท BibTeX ยท CFF)
APA citation
sickn33. (2026). shopify-development security audit report (audit version 5) [Author version unspecified]. Skillstore. https://skillstore.io/skills/sickn33-shopify-development/audits/5BibTeX citation
@techreport{sickn33-sickn33-shopify-development-2026,
author = {sickn33},
title = {shopify-development security audit report (audit version 5)},
institution = {Skillstore},
year = {2026},
number = {5},
url = {https://skillstore.io/skills/sickn33-shopify-development/audits/5},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "shopify-development security audit report (audit version 5)"
version: "unspecified"
type: report
authors:
- name: "sickn33"
date-released: "2026-07-07"
url: "https://skillstore.io/skills/sickn33-shopify-development/audits/5"
identifiers:
- type: other
value: "skillstore:sickn33-shopify-development:audit:5"
description: "Skillstore immutable audit report identifier"
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Plan an Embedded Shopify App
Use OAuth, scopes, GraphQL, webhook, billing, and project structure guidance to design an app implementation.
Build Storefront Theme Features
Use Liquid, sections, snippets, product forms, and cart patterns to customize storefront behavior.
Create Commerce UI Extensions
Use checkout, admin, POS, customer account, and Function examples to plan targeted merchant experiences.
Try These Prompts
I need to build a Shopify feature for [goal]. Decide whether this should be an app, extension, theme change, or combined approach.
Plan a Shopify app that uses [data or workflow]. Include scopes, OAuth flow, webhooks, GraphQL operations, and deployment steps.
Design a Shopify [checkout, admin, POS, or customer account] extension for [merchant task]. Include target, data needs, UI flow, and API calls.
Review my Shopify implementation plan for security, API limits, webhooks, billing, theme impact, and app review readiness.
Best Practices
- Request the smallest Shopify access scopes that support the feature.
- Validate webhook HMAC signatures and OAuth state values before processing requests.
- Check Shopify API versions and GraphQL query costs before production deployment.
Avoid
- Do not hardcode merchant credentials, access tokens, or secrets in app or theme files.
- Do not build checkout changes as theme code when Shopify requires an extension.
- Do not process large stores without pagination, retries, and rate limit handling.
Frequently Asked Questions
What Shopify work does this skill support?
Does it include executable code?
Can it help with Shopify CLI workflows?
Does it validate Shopify credentials?
Is the reference code production ready?
Which AI tools are supported?
Developer Details
Author
sickn33License
MIT
Skillstore revision
r1
Version notice
The author did not declare a version.
Repository
https://github.com/sickn33/antigravity-awesome-skills/tree/main/skills/shopify-developmentRef
9f814fc6a43fd99946f2da5e0df231c65a38bc76
Maintenance freshness
7/18/2026
Usage
14 downloads ยท 192 views
File structure
๐ references/
๐ app-development.md
๐ extensions.md
๐ themes.md
๐ scripts/
๐ tests/
๐ test_shopify_init.py
๐ requirements.txt
๐ shopify_graphql.py
๐ shopify_init.py
๐ README.md
๐ SKILL.md