wp-ability-auth

Pass

Audited by Gen Agent Trust Hub on Sep 1, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides best-practice security guidance for WordPress development. It specifically addresses high-risk areas like Indirect Object Reference (IDOR) by teaching a two-tier authorization model (coarse capability checks followed by per-object meta-capability checks).
  • [SAFE]: The provided PHP examples implement standard WordPress security patterns, such as using WP_Error for proper HTTP 403 status codes, current_user_can for capability checks, and apply_filters for extensibility.
  • [SAFE]: No obfuscation, data exfiltration, or unauthorized command execution was detected. The code snippets are instructional and meant for developers to integrate into their own projects.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 1, 2026, 11:15 AM
Security Audit — agent-trust-hub — wp-ability-auth