woo-frontend
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious patterns detected. The skill instructions follow standard WordPress and WooCommerce development protocols.
- [INDIRECT_PROMPT_INJECTION]: The skill describes processes for handling dynamic content from a WooCommerce store.
- Ingestion points: Processes dynamic content such as product titles, cart items, and account details via WooCommerce template hooks.
- Boundary markers: Absent in the instructional code snippets.
- Capability inventory: The skill utilizes file system tools including Read, Write, Edit, and Bash.
- Sanitization: The skill correctly includes a specific best practice instruction to "Escape all dynamic output in templates," which mitigates potential injection risks during implementation.
Audit Metadata