Add Admin API Endpoint
Pass
Audited by Gen Agent Trust Hub on Oct 11, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [SAFE]: The skill provides developer documentation and procedural instructions for extending the Ghost CMS Admin API. The instructions focus on secure coding practices, explicitly requiring permission definitions and input validation for all new endpoints.
- [COMMAND_EXECUTION]: The skill includes instructions to run local tests using the
pnpmpackage manager (e.g.,pnpm test:single). This is a standard development task within the Ghost ecosystem and is used here for verifying the functionality of newly created endpoints. - [REMOTE_CODE_EXECUTION]: The skill references several Node.js packages including
@tryghost/api-framework,@tryghost/errors, and@tryghost/validator. These are official vendor packages developed by the skill author for the Ghost platform, and their use in the examples is consistent with standard framework usage.
Audit Metadata