woo-security
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill instructions involve fetching live documentation from trusted developer portals. This establishes an ingestion point for external data, which is an inherent part of retrieving up-to-date security information.\n- Ingestion points: Official developer documentation for WordPress and WooCommerce retrieved via
WebSearchandWebFetch(SKILL.md).\n- Boundary markers: Not explicitly defined in the skill instructions.\n- Capability inventory: The skill uses standard agent tools includingWrite,Edit, andBash.\n- Sanitization: The agent is not specifically instructed to sanitize the fetched documentation, relying on the trusted nature of the official sources.
Audit Metadata