Skip to content

[Ability] security-scan — Run basic security checks #9

Description

@pluginslab

Use Case

User says "run a security scan" or "check security". AI runs basic security checks: file permissions on wp-config.php, whether debug mode is on in production, whether salts are default, WordPress version exposure, directory listing enabled.

Checklist

  • Writer: Define natural language triggers (keywords), expected response format, read-only or destructive
  • PHP Dev: Create includes/abilities/security-scan.php with register_agentic_ability()
  • JS Dev: Create src/extensions/abilities/security-scan.js with registerAbility()
  • JS Dev: Register in src/extensions/abilities/index.js
  • LLM Tester: Add test cases to tests/abilities/core-abilities.test.js
  • Build & verify: npm run build and npm run test:abilities

References

Notes

Check WP_DEBUG, WP_DEBUG_DISPLAY, file permissions via fileperms(), salts via wp_salt() comparison. Readonly. Return findings as a list with severity levels (info/warning/critical).

Activity

  1. added
    phpPHP backend work
    react-jsReact/JavaScript frontend work
    hackathonCloudFest Hackathon 2026
    abilityNew ability implementation
    testingTesting and QA
    on Mar 14, 2026
  2. ivdimova commented on Mar 20, 2026

    @ivdimova
    Collaborator

    /assign

  3. added a commit that references this issue on Mar 20, 2026
  4. pluginslab commented on Mar 20, 2026

    @pluginslab
    OwnerAuthor

    Closed by PR #57

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

Labels

abilityNew ability implementationgood first issueGood for newcomershackathonCloudFest Hackathon 2026phpPHP backend workreact-jsReact/JavaScript frontend worktestingTesting and QA

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions