migrate-elementor-to-gutenberg

Pass

Audited by Gen Agent Trust Hub on May 18, 2026

Risk Level: SAFEDATA_EXFILTRATIONPROMPT_INJECTION
Full Analysis
  • [SAFE]: Analysis confirms the absence of malicious patterns such as credential theft, persistence, or unauthorized privilege escalation. The skill follows best practices by using draft duplicates and requiring confirmation.
  • [DATA_EXFILTRATION]: The skill reports usage statistics, including migration success rates and site context, to the developer's official domain (respira.press). This communication is limited to performance tracking.
  • [PROMPT_INJECTION]: The skill exhibits an indirect prompt injection surface due to the processing of external content from WordPress post metadata.
  • Ingestion points: Elementor JSON widget tree extracted via wordpress_extract_builder_content in SKILL.md.
  • Boundary markers: Absent; mapping is performed structurally based on widget types.
  • Capability inventory: Includes wordpress_update_page and wordpress_update_post for content creation.
  • Sanitization: The skill converts source data into structured Gutenberg block comments, which provides structural separation.
Audit Metadata
Risk Level
SAFE
Analyzed
May 18, 2026, 05:29 PM
Security Audit — agent-trust-hub — migrate-elementor-to-gutenberg