wp-rest-api

Pass

Audited by Gen Agent Trust Hub on Mar 22, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill consists of instructional markdown files and references to local scripts for project discovery. It provides comprehensive guidance on implementing security-sensitive components of the WordPress REST API, such as authentication (cookies, nonces, application passwords) and authorization (permission_callback).
  • [COMMAND_EXECUTION]: The skill suggests executing a local script (node skills/wp-project-triage/scripts/detect_wp_project.mjs) and using WP-CLI for standard WordPress management tasks. These are intended behaviors for a developer-oriented agent.
  • [PROMPT_INJECTION]: No evidence of instructions intended to bypass safety guardrails or override agent behavior was detected.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 22, 2026, 03:03 PM
Security Audit — agent-trust-hub — wp-rest-api