wp-view-config-api
Pass
Audited by Gen Agent Trust Hub on Sep 9, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill describes an API that ingests entity configurations for DataViews. While this is a data ingestion surface, the documentation explicitly instructs developers that these configurations should not be used for security-critical authorization and must be protected by standard WordPress capability checks.
- [SAFE]: The skill contains only instructional code snippets and documentation. No obfuscation, malicious network activity, or unauthorized file access patterns were found. All external references target official WordPress community resources.
Audit Metadata