wp-batch-mutation-audit

Pass

Audited by Gen Agent Trust Hub on Sep 9, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references official WordPress documentation (developer.wordpress.org) for cron and CLI guidance. These are trusted resources from a well-known technology provider and do not represent a security risk.
  • [INDIRECT_PROMPT_INJECTION]: The skill serves as an auditing tool for user-provided code, which introduces an indirect injection surface. Ingestion points: The skill processes batch-write workflows and PHP code snippets provided by the user for review (SKILL.md). Boundary markers: No specific delimiters or 'ignore' instructions are defined to wrap the untrusted code during analysis. Capability inventory: The skill utilizes standard reasoning capabilities and does not request additional tools that could be abused via injection. Sanitization: The audit workflow focuses on logical verification rather than input sanitization.
  • [SAFE]: The skill is primarily instructional and contains no executable scripts, system commands, or hidden data. The metadata is consistent with the skill's stated purpose, and the author's contact information is clear and legitimate.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 9, 2026, 07:07 PM
Security Audit — agent-trust-hub — wp-batch-mutation-audit