woocommerce-backend-dev

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE] (SAFE): No malicious patterns, obfuscation, or data exfiltration attempts were detected. The skill is instructional in nature, providing guidance for software development within the WooCommerce project.
  • [NO_CODE] (SAFE): The skill does not contain any executable scripts, shell commands, or configuration files that would trigger automated tasks. It provides high-level instructions and refers to external documentation files (not provided) for specific conventions.
  • [Indirect Prompt Injection] (LOW): The skill identifies a potential ingestion point for untrusted data by instructing the agent to read includes/class-woocommerce.php to determine the project version. This is a common development task and carries minimal risk.
  • Ingestion points: Reading includes/class-woocommerce.php (file system).
  • Boundary markers: Absent (instructions do not specify delimiters for file content).
  • Capability inventory: The description implies the agent has the capability to add or modify PHP code (file system write access).
  • Sanitization: Not applicable for the specified version extraction task.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:09 PM