wordpress-gutenberg-expert

Pass

Audited by Gen Agent Trust Hub on Mar 9, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: Several agent files (e.g., agents/tooling/cicd-pipelines.md, agents/tooling/local-dev.md) contain automation scripts that fetch WordPress core files and testing suites from wordpress.org and svn.wordpress.org. These sources are standard and trusted within the WordPress developer community.
  • [COMMAND_EXECUTION]: The tooling and local development agents provide detailed instructions and shell scripts for managing WordPress environments. These include using WP-CLI for database operations, rsync for deployments, and docker via wp-env for local staging. All commands are relevant to the skill's stated purpose of professional WordPress development.
  • [SAFE]: The skill explicitly includes a dedicated security agent (agents/wp-core/security-validation.md) that teaches correct implementation of nonces for CSRF protection, sanitization for input handling, and escaping for output, which significantly mitigates common web vulnerabilities.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 9, 2026, 11:30 PM