wp-rest-api
Pass
Audited by Gen Agent Trust Hub on Mar 22, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill consists of instructional markdown files and references to local scripts for project discovery. It provides comprehensive guidance on implementing security-sensitive components of the WordPress REST API, such as authentication (cookies, nonces, application passwords) and authorization (permission_callback).
- [COMMAND_EXECUTION]: The skill suggests executing a local script (node skills/wp-project-triage/scripts/detect_wp_project.mjs) and using WP-CLI for standard WordPress management tasks. These are intended behaviors for a developer-oriented agent.
- [PROMPT_INJECTION]: No evidence of instructions intended to bypass safety guardrails or override agent behavior was detected.
Audit Metadata