Skip to main content

AGENTFORCE-17.1: Commerce Agent Without Idempotency Key

๐Ÿšจ Critical ยท Agentforce for Commerce

Detects agent actions targeting Apex classes that make HTTP callouts to Commerce or Order Management APIs without including an Idempotency-Key header. LLM retry behaviour combined with network failures can cause duplicate order creation or double-billing.

Detailsโ€‹

FieldValue
Rule IDAGENTFORCE-17.1
SeverityCritical
CategoryAgentforce for Commerce
CompliancePCI_DSS, SOC2_CC6

Remediationโ€‹

Refer to the SquireX documentation for remediation guidance specific to AGENTFORCE-17.1.

See Alsoโ€‹