CtrlK
BlogDocsLog inGet started
Tessl Logo

wordpress-plugin-development

Use when creating WordPress plugins: hooks, admin interfaces, custom tables, REST endpoints, Abilities API, AI Client integration, PHP-only blocks, security hardening, or plugin test setup. Do not use for theme templates or storefront setup; use wordpress-theme-development or wordpress-woocommerce-development.

63

Quality

75%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

Fix and improve this skill with Tessl

tessl review fix ./skills/wordpress-skills/wordpress-plugin-development/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

63%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The body delivers strong, executable, WordPress-7.0-specific guidance with real validation gates, and its code examples are the best part. Its weaknesses are the padded generic phase bullets that add tokens without information, and the monolithic single-file structure — dense compliance details and full code recipes should live in reference files.

Suggestions

Trim or delete the generic phase Actions lists ("Implement singleton pattern", "Set up dependency injection") and the vague "WordPress 7.0 Considerations" bullets; keep only guidance Claude would not already know.

Move the phpcs/Plugin Check compliance details and the long AI Connector / Abilities / block registration examples into references/ files (e.g., references/plugin-check.md, references/abilities-api.md) and link them one level deep from SKILL.md.

Add an explicit feedback loop around validation, e.g., "Run `wp plugin check`, fix reported sniffs, re-run until 0 errors and 0 warnings before submission", and complete the $where whitelist example so it is copy-paste ready.

DimensionReasoningScore

Conciseness

The ~500-line body mixes genuinely non-obvious material ($wpdb %i placeholders, phpcs annotation placement, PCP audit behavior) with filler that assumes Claude's intelligence: generic phase bullets like "Implement singleton pattern", "Set up dependency injection", and vague 7.0 considerations like "Prepare for iframed editor compatibility", "Design for collaboration-aware data flows". Mostly efficient but padded in the phase scaffolding, matching anchor 3 rather than 4.

3 / 5

Actionability

Mostly executable, copy-paste-ready guidance: the wp_ai_client_prompt chain, full Abilities registration with input/output schemas, register_block_type render callback, register_post_meta with sanitize_callback, and `wp plugin check <plugin-slug>`. Not anchor 5 because of minor gaps: the DataViews example references an undefined `handleViewChange` and `/* records */` placeholder, and the `$where` whitelist construction is described but never shown.

4 / 5

Workflow Clarity

Nine clearly sequenced phases (setup → architecture → hooks → admin → database → REST → security → 7.0 features → testing) closing with hard validation checkpoints: "All code must pass with 0 errors and 0 warnings", the Quality Gates and Compatibility checklists, and the warning that WordPress.org ignores local exclude-patterns. Not anchor 5 because there is no explicit fix-and-re-run feedback loop around the PCP/test gates, leaving checkpoint recovery implicit.

4 / 5

Progressive Disclosure

No bundle files exist (no references/, scripts/, or assets/), so everything — the full phpcs/PCP compliance details, three long code examples, and the DataViews snippet — is inlined in one 500-line SKILL.md. Section headers give decent structure, but reference-grade material that clearly belongs in separate files is inline, matching anchor 3 rather than 2 (organization is present) or 4 (no content is actually split out).

3 / 5

Total

14

/

20

Passed

Description

87%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description is strong: it explicitly states when to use the skill with a concrete trigger list, clearly defines scope, and positively disambiguates against adjacent WordPress skills with named alternatives. The only minor weakness is that capabilities are listed as topic nouns rather than action verbs, slightly blurring the what-vs-when distinction.

Suggestions

Rewrite the capability list with action verbs (e.g., 'Register hooks, build admin settings pages, create custom $wpdb tables, expose REST endpoints') to sharpen the what-does-this-do statement.

Add a few more natural trigger synonyms users commonly say, such as 'options page', 'admin menu', 'shortcode', or 'plugin.php'.

DimensionReasoningScore

Specificity

Quotes: "creating WordPress plugins: hooks, admin interfaces, custom tables, REST endpoints, Abilities API, AI Client integration, PHP-only blocks, security hardening, or plugin test setup" — nine concrete capability areas are explicitly enumerated, giving comprehensive domain coverage. It sits just below anchor 5 because the only action verb is "creating"; the capabilities are stated as topic nouns rather than the concrete actions ("extract text", "fill forms") that the top anchor exemplifies.

4 / 5

Completeness

Quotes: "Use when creating WordPress plugins: hooks, admin interfaces, custom tables, REST endpoints, Abilities API, AI Client integration, PHP-only blocks, security hardening, or plugin test setup. Do not use for theme templates or storefront setup; use wordpress-theme-development or wordpress-woocommerce-development." Both what (the enumerated plugin-development tasks) and when (explicit "Use when" triggers plus explicit exclusions) are clearly and concretely stated, matching the top anchor's pattern of concrete trigger phrases.

5 / 5

Trigger Term Quality

Quotes: "WordPress plugins", "hooks", "admin interfaces", "custom tables", "REST endpoints", "security hardening", "plugin test setup" — these are natural phrases a user would say when needing this skill. Not anchor 5 because common variations like "options/settings page", "shortcode", "admin menu", or file extensions (.php, plugin.php) are absent; not anchor 3 because coverage goes well beyond a single keyword.

4 / 5

Distinctiveness Conflict Risk

Quotes: "Do not use for theme templates or storefront setup; use wordpress-theme-development or wordpress-woocommerce-development" — it carves out a clear niche (plugin development only) and explicitly disambiguates against the two most confusable sibling skills, giving minimal conflict risk.

5 / 5

Total

18

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

skill_md_line_count

SKILL.md is long (514 lines); consider splitting into references/ and linking

Warning

Total

15

/

16

Passed

Repository
administrakt0r/pro-skills-repo-administraktor
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.