Skip to content

feat: add Content Slider block #254

feat: add Content Slider block

feat: add Content Slider block #254

Triggered via pull request June 19, 2026 13:27
Status Failure
Total duration 3m 31s
Artifacts 1

plugin-check.yml

on: pull_request
WordPress.org Guidelines Check
3m 26s
WordPress.org Guidelines Check
Fit to window
Zoom out
Zoom in

Annotations

10 errors and 10 warnings
WordPress.Security.EscapeOutput.UnsafePrintingFunction: inc/class-pro.php#L249
All output should be run through an escaping function (like esc_html_e() or esc_attr_e()), found '_e'.
WordPress.Security.EscapeOutput.UnsafePrintingFunction: inc/class-pro.php#L248
All output should be run through an escaping function (like esc_html_e() or esc_attr_e()), found '_e'.
WordPress.Security.EscapeOutput.UnsafePrintingFunction: inc/class-pro.php#L247
All output should be run through an escaping function (like esc_html_e() or esc_attr_e()), found '_e'.
WordPress.Security.EscapeOutput.UnsafePrintingFunction: inc/class-pro.php#L244
All output should be run through an escaping function (like esc_html_e() or esc_attr_e()), found '_e'.
application_detected: phpcs.xml.dist#L0
Application files are not permitted.
block_api_version_too_low: src/blocks/blocks/form/captcha/block.json#L0
Editor blocks must define "apiVersion" 3 or higher in block.json for WordPress 7.0+ iframe editor compatibility.
WordPress.Security.EscapeOutput.UnsafePrintingFunction: plugins/otter-pro/inc/plugins/class-woocommerce-builder.php#L88
All output should be run through an escaping function (like esc_html_e() or esc_attr_e()), found '_e'.
WordPress.Security.EscapeOutput.UnsafePrintingFunction: plugins/otter-pro/inc/plugins/class-woocommerce-builder.php#L85
All output should be run through an escaping function (like esc_html_e() or esc_attr_e()), found '_e'.
WordPress.Security.EscapeOutput.UnsafePrintingFunction: plugins/otter-pro/inc/plugins/class-woocommerce-builder.php#L78
All output should be run through an escaping function (like esc_html_e() or esc_attr_e()), found '_e'.
WordPress.Security.EscapeOutput.UnsafePrintingFunction: plugins/otter-pro/inc/plugins/class-woocommerce-builder.php#L75
All output should be run through an escaping function (like esc_html_e() or esc_attr_e()), found '_e'.
WordPress.Security.ValidatedSanitizedInput.MissingUnslash: plugins/otter-pro/inc/plugins/class-form-emails-storing.php#L1416
$_POST['_nonce'] not unslashed before sanitization. Use wp_unslash() or similar
WordPress.Security.ValidatedSanitizedInput.MissingUnslash: plugins/otter-pro/inc/plugins/class-block-conditions.php#L282
$_COOKIE[$condition['cookie_key']] not unslashed before sanitization. Use wp_unslash() or similar
WordPress.Security.ValidatedSanitizedInput.MissingUnslash: plugins/otter-pro/inc/plugins/class-dynamic-content.php#L552
$_SERVER['REMOTE_ADDR'] not unslashed before sanitization. Use wp_unslash() or similar
WordPress.Security.ValidatedSanitizedInput.MissingUnslash: plugins/otter-pro/inc/plugins/class-dynamic-content.php#L550
$_SERVER['HTTP_FORWARDED'] not unslashed before sanitization. Use wp_unslash() or similar
WordPress.Security.ValidatedSanitizedInput.MissingUnslash: plugins/otter-pro/inc/plugins/class-dynamic-content.php#L548
$_SERVER['HTTP_FORWARDED_FOR'] not unslashed before sanitization. Use wp_unslash() or similar
WordPress.Security.ValidatedSanitizedInput.MissingUnslash: plugins/otter-pro/inc/plugins/class-dynamic-content.php#L546
$_SERVER['HTTP_X_FORWARDED'] not unslashed before sanitization. Use wp_unslash() or similar
WordPress.Security.ValidatedSanitizedInput.MissingUnslash: plugins/otter-pro/inc/plugins/class-dynamic-content.php#L544
$_SERVER['HTTP_X_FORWARDED_FOR'] not unslashed before sanitization. Use wp_unslash() or similar
WordPress.Security.ValidatedSanitizedInput.MissingUnslash: plugins/otter-pro/inc/plugins/class-dynamic-content.php#L542
$_SERVER['HTTP_CLIENT_IP'] not unslashed before sanitization. Use wp_unslash() or similar
WordPress.Security.ValidatedSanitizedInput.MissingUnslash: plugins/otter-pro/inc/class-main.php#L214
$_GET['post_type'] not unslashed before sanitization. Use wp_unslash() or similar
WordPress.Security.ValidatedSanitizedInput.MissingUnslash: inc/class-blocks-animation.php#L437
$_POST['nonce'] not unslashed before sanitization. Use wp_unslash() or similar

Artifacts

Produced during runtime
Name Size Digest
plugin-check-results
3.68 KB
sha256:c975c81ef979e3b22f17d5ad1e9ec172600929497c4013d60efce6a8e482ca38