engineering-cms-developer

Pass

Audited by Gen Agent Trust Hub on Aug 10, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill enforces secure development practices by explicitly requiring output sanitization (e.g., esc_html, esc_url) and prohibiting unsafe execution methods such as eval().
  • [SAFE]: Instructions include a critical rule to vet all plugins and modules for security advisories, active maintenance, and installation reputation before recommendation.
  • [SAFE]: The skill promotes standard configuration management practices, favoring code-based configuration (YAML exports, wp-config.php) over database-only settings to ensure environment auditability.
  • [SAFE]: No evidence of data exfiltration, obfuscation, or unauthorized remote code execution was found. The use of standard development tools like Composer and NPM is consistent with the skill's stated purpose.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 10, 2026, 02:36 AM
Security Audit — agent-trust-hub — engineering-cms-developer