editing-blocks

Pass

Audited by Gen Agent Trust Hub on Jul 26, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides standard WordPress development templates and guidelines. No malicious patterns, obfuscation, or unauthorized access attempts were identified.
  • [EXTERNAL_DOWNLOADS]: The package.json template includes @wordpress/scripts, a well-known and official development tool for the WordPress ecosystem.
  • [PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection as it reads existing block files in the workspace. 1. Ingestion points: Reads existing block files (JS, JSON, PHP) in the workspace as directed in SKILL.md. 2. Boundary markers: Absent. 3. Capability inventory: Uses the edit and write tools for file system modifications. 4. Sanitization: No specific sanitization or validation of the contents of existing block files is performed before processing.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 26, 2026, 03:02 AM
Security Audit — agent-trust-hub — editing-blocks