wordpress-gutenberg-expert
Pass
Audited by Gen Agent Trust Hub on Mar 9, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: Several agent files (e.g.,
agents/tooling/cicd-pipelines.md,agents/tooling/local-dev.md) contain automation scripts that fetch WordPress core files and testing suites fromwordpress.organdsvn.wordpress.org. These sources are standard and trusted within the WordPress developer community. - [COMMAND_EXECUTION]: The tooling and local development agents provide detailed instructions and shell scripts for managing WordPress environments. These include using
WP-CLIfor database operations,rsyncfor deployments, anddockerviawp-envfor local staging. All commands are relevant to the skill's stated purpose of professional WordPress development. - [SAFE]: The skill explicitly includes a dedicated security agent (
agents/wp-core/security-validation.md) that teaches correct implementation of nonces for CSRF protection, sanitization for input handling, and escaping for output, which significantly mitigates common web vulnerabilities.
Audit Metadata