wp-action-scheduler

Pass

Audited by Gen Agent Trust Hub on Sep 9, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to analyze and review WordPress plugin code and Action Scheduler job definitions provided by users. This creates a surface where malicious instructions could be embedded in the data processed by the agent.
  • Ingestion points: User-provided WordPress plugin source code, specifically Action Scheduler hook registrations and callback definitions (e.g., in SKILL.md under 'When to use this skill').
  • Boundary markers: The skill does not define specific delimiters or instructions to the agent to ignore embedded prompts within the plugin code being reviewed.
  • Capability inventory: The skill provides technical instructions for code review but does not explicitly define or invoke high-privilege tools, network operations, or file system modifications itself.
  • Sanitization: No content sanitization or validation steps are defined for the data processed by the agent.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 9, 2026, 07:07 PM
Security Audit — agent-trust-hub — wp-action-scheduler