wordpress-live-validation
Pass
Audited by Gen Agent Trust Hub on Jun 24, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues detected. The skill enforces a strict read-only observation policy, preventing any unauthorized modifications to the target WordPress site. It utilizes standard MCP tools for browser automation and employs hardcoded JavaScript snippets for data extraction (e.g., in
references/phase-checks.md), which minimizes the risk of command or script injection. While the skill's primary function involves processing external web content—a standard surface for indirect prompt injection—it does so within the scope of its intended validation purpose and does not possess capabilities that would facilitate significant harm from such an attack.
Audit Metadata