wpscan

Pass

Audited by Gen Agent Trust Hub on Jun 26, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides instructions for executing the wpscan command-line utility. The provided examples include common flags for enumerating plugins, themes, and users, as well as performing credential checks. These operations are restricted to targets specified by the user and are consistent with the skill's documented purpose for security assessments.
  • [SAFE]: No malicious patterns such as prompt injection, obfuscation, or unauthorized data exfiltration were detected. The skill follows security best practices by using placeholders for sensitive inputs like API tokens and referencing external password lists rather than hardcoding credentials.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 26, 2026, 12:34 AM
Security Audit — agent-trust-hub — wpscan