Systematic root-cause debugging for an EA widget. Use when a widget is reported broken, a fix didn't take effect, editor and frontend diverge, or asset/AJAX failures are suspected. Reproduce → localize → trace → fix-at-root → guard. Every step ends with a confirming signal — no guesses.
Design and audit Elementor controls for an EA widget. Use when adding controls to a new or existing widget, refactoring a messy registercontrols(), deciding between control types, or wiring conditions, responsive, and selectors. Outputs control code that follows EA conventions and renders sensibly with default values.
Scaffold a new Essential Addons widget end-to-end — gather requirements, generate PHP class, SCSS, optional JS, register in config.php, optional Pro upsell, build, and verify. Use when adding any new widget, even simple display ones. Outputs files that already follow EA conventions (text domain, BEM, AssetBuilder…
Ship a change via a feature branch and pull request — never directly to the default branch. Use after any code change, fix, refactor, or docs update that needs to land on main. Branches are named from the FluentBoards card. Commits go through the husky pre-commit hook (lint-staged); pushes go to the feature branch…
Pre-flight checklist for shipping an EA Lite release to WordPress.org. Use when bumping a version, preparing a release branch, building a distribution zip, or before tagging. Walks through quality gates, version bump in three required files, changelog format, .distignore audit, and post-release verification. No phase…
Senior-level audit of a single EA widget across five axes — correctness, security, i18n, asset hygiene, and architecture. Use when asked to "review", "audit", or "check" a widget in includes/Elements/, before merging widget changes, or after porting a widget between Lite and Pro. Produces a structured report with…
Audit and fix WordPress AJAX handlers registered via wpajaxnopriv that build WPQuery args from client input. Catches the common pattern where a handler overrides poststatus/posttype to 'any' (or trusts client-supplied postin / author / metaquery) and ends up exposing private, draft, pending, future, trash, or…
Audit and fix WordPress / WooCommerce plugins that leak password-protected post content through AJAX handlers or listing-widget queries. Catches the specific gap that isvisible() + poststatus === 'publish' checks miss: password-protected posts keep poststatus='publish', so they bypass draft/private guards while their…
★not rated 53 2d agoA155 tokens
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: