wp-abilities-api

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill instructs the agent to ingest and analyze untrusted content from a repository root (e.g., searching for API usage patterns, reading project triage signals).
  • Ingestion points: The agent is directed to search the project repository for specific PHP and JS patterns (wp_register_ability, @wordpress/abilities, etc.) and read local configuration files like AGENTS.md.
  • Boundary markers: The instructions lack explicit boundary markers or warnings for the agent to ignore instructions embedded within the analyzed code or documentation files.
  • Capability inventory: The skill environment supports file system access, bash execution, and WP-CLI, which provides a significant attack surface if an injection occurs.
  • Sanitization: No sanitization or validation of the repository content is specified before the agent processes it.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 05:23 PM