[theme-reviewers] Guidance on theme security

Gene Robinson emhr at submersible.me
Sat Oct 16 16:08:18 UTC 2010


Hi,

I don't in any way claim to be an expert in theme security. I am wondering what are the basic requirements and or recommendations for reviews. I'm finding the use of non-ssl capable functions get_option('home') and get_option('site_url') in links and the lack of wp_nonce_field() and check_admin_referrer() in theme options.

-Gene


More information about the theme-reviewers mailing list