Bundle Pluginsource linked

Saleor Commercev1.0.0

Expert subagent and skills for Saleor commerce development — GraphQL-only API with Graphene-Django, App development with Next.js SDK, webhooks (async/sync with subscription payloads), Dashboard extensions with App Bridge and MacawUI, Next.js storefronts, channels, catalog with typed attributes, transaction payment flow, and Python/Django/GraphQL/Next.js patterns.

@ichiorca/openclaw-saleor-commerce·runtime saleor-commerce·by @ichiorca
openclaw bundles install clawhub:@ichiorca/openclaw-saleor-commerce
Latest release: v1.0.0Download zip

Capabilities

Bundle format
generic
Host targets
openclaw
Runtime ID
saleor-commerce

Compatibility

Built With Open Claw Version
2026.3.24-beta.2
Plugin Api Range
>=2026.3.24-beta.2
Security Scan
VirusTotalVirusTotal
Benign
View report →
OpenClawOpenClaw
Benign
medium confidence
Purpose & Capability
The skill is coherent with its stated purpose: it provides Saleor, GraphQL, Django, Next.js, app, webhook, and commerce-development guidance. It can guide work that affects products, orders, customers, payments, and deployments, so generated changes should be reviewed before use on live stores.
Instruction Scope
The instructions repeatedly require web-searching or fetching current official documentation before writing code. This is purpose-aligned for a rapidly changing API, but users should expect browsing/tool use.
Install Mechanism
No install spec is declared, and the OpenClaw manifest references skill directories only. The provided code files appear to be local safety helper hooks, with no visible evidence of automatic package installation, background service setup, or remote script execution.
Credentials
The guidance discusses npm, Next.js, Django, Docker, Saleor CLI, migrations, deployments, GraphQL tokens, and app permissions, which are proportionate to Saleor development but can affect production environments if applied carelessly.
Persistence & Privilege
The plugin itself declares no required credentials or config, but the Saleor app guidance explains storing app tokens in an Auth Persistence Layer and requesting high-impact permissions; this is expected for Saleor Apps and should be scoped carefully.
Assessment
This appears safe to install as a Saleor development aid. Before using it on a real store, verify generated code and manifests, keep Saleor tokens and payment credentials server-side, limit app permissions, and review any database migration, deployment, or destructive command before running it.

Verification

Tier
source linked
Scope
artifact only
Summary
Validated package structure and linked the release to source metadata.
Commit
a724f54ae90a
Tag
main
Provenance
No
Scan status
clean

Tags

latest
1.0.0