{ }
Resource profile / WordPress Plugin Directory Review Checklist
About this skill

Workflow & requirements

Overview

Authoritative reference for the 18 WordPress.org Plugin Directory guidelines. Covers GPL licensing, plugin naming/trademark rules, trialware restrictions, and all other submission requirements.

When to use

Use this skill when you need to: - Review a WordPress plugin for compliance with the WordPress.org Plugin Directory guidelines - Check GPL license compatibility for a plugin or its bundled libraries - Verify license headers in plugin files - Identify common guideline violations before submission - Answer questions about what is or is not allowed on WordPress.org - Evaluate premium/upsell flows, license checks, or freemium positioning - Review "teaser" or "preview" UI for trialware violations

Inputs required

  • Plugin source code (or specific files to review)
  • Optional: plugin readme and plugin header metadata for naming and license checks

Procedure

  1. Check the plugin's license header against the Valid License Headers section below.
  2. Walk through the 18 Guidelines checklist, paying special attention to Guidelines 1, 4, 5, 7, 8, and 17.
  3. Confirm trialware/freemium compliance using the checklist in guideline-review-checklist.md (Guideline 5 section).
  4. For bundled third-party code, verify license compatibility against GPL-Compatible Licenses (Quick) below.
  5. Flag matches from Common GPL Violations (Quick) below.
  6. For edge cases, consult the detailed references and the GNU GPL FAQ.

18-Guideline Review Checklist

Use the detailed, per-guideline checklist in guideline-review-checklist.md. Load this reference file only when a full guideline audit is requested.

GPL Compliance (Guideline 1 in Detail)

Use gpl-compliance.md for full license tables, compatibility nuances, and examples. Keep this inline section as a quick decision aid.

Verification (Licensing)

  • Every licensing-related issue must cite Guideline 1 and include the file path and exact license string.
  • Confirm compatibility claims against GPL-Compatible Licenses (Quick) and escalate ambiguous licenses.

Failure modes (Licensing)

  • If a license is not clearly GPL-compatible, do not guess. Check the GNU license list.
  • For dual-license packages, verify both licenses and redistribution terms.

Quick Reference: WordPress GPL Requirements

  • WordPress is GPLv2 or later.
  • Plugins distributed on WordPress.org must be 100% GPL-compatible (code and assets).
  • Include a valid License: header and License URI: in the main plugin file.
  • Do not add restrictions that conflict with GPL freedoms.

Valid License Headers

GPL Versions Summary

Version Year Key Addition
GPLv1 1989 Base copyleft: share-alike for modifications
GPLv2 1991 "Liberty or death" clause (Section 7), clearer distribution terms
GPLv3 2007 Anti-tivoization, explicit patent grants, compatibility provisions

WordPress uses GPLv2 or later, meaning plugins can use GPLv2, GPLv3, or "GPLv2 or later".

For full license texts, see: - GNU General Public License v1 - GNU General Public License v2 - GNU General Public License v3

License Compliance Checklist

When reviewing a plugin, verify:

  • [ ] Main plugin file has a valid License: header (e.g., GPL-2.0-or-later, GPL-2.0+, GPLv2 or later)
  • [ ] Main plugin file has a License URI: header pointing to the GPL text
  • [ ] If bundled libraries exist, each has a GPL-compatible license
  • [ ] No "split licensing" (e.g., code GPL but premium features proprietary)
  • [ ] No additional restrictions beyond what GPL allows
  • [ ] No clauses restricting commercial use, modification, or redistribution
  • [ ] No obfuscated code (violates the spirit of source code availability)

Valid License Headers for WordPress Plugins

License: GPL-2.0-or-later
License URI: https://www.gnu.org/licenses/gpl-2.0.html
License: GPL-3.0-or-later
License URI: https://www.gnu.org/licenses/gpl-3.0.html
License: GPLv2 or later
License URI: https://www.gnu.org/licenses/gpl-2.0.html

GPL-Compatible Licenses (Quick)

  • Safe defaults: GPL-2.0-or-later, GPL-3.0-or-later.
  • Commonly accepted permissive families: MIT/Expat, BSD, ISC, zlib, Boost.
  • Conditional compatibility requires care: Apache-2.0 and MPL-2.0 (verify usage context).
  • For full accepted and rejected identifiers, use gpl-compliance.md.

Common GPL Violations (Quick)

  • Split licensing that restricts distributed code.
  • Obfuscated or non-corresponding source distribution.
  • Restrictive clauses (non-commercial, no-resale, forced backlink).
  • Bundling GPL-incompatible libraries or assets.

Plugin Naming Rules (Guideline 17)

Use naming-rules.md for full trademark lists, slug blocks, and naming examples. Keep this inline checklist for quick screening.

Naming Checklist (Quick)

  • Name is not a placeholder and has at least 5 alphanumeric characters.
  • Header name and readme name match.
  • Name is specific and function-related; avoid keyword stuffing.
  • Trademark/project names appear only after connectors like for, with, using, and.
  • No banned/discouraged terms or trademark portmanteaus.
  • Slug is lowercase, hyphenated, <= 50 chars, and avoids blocked terms.
PACKAGE TRANSPARENCY

Inspect before installing

Source: WordPress · GPL-2.0-or-later · SHA-256 shown alongside the download.

9 files28836 ZIP bytes0 script/code files

License file included. A license and checksum are not a security certification. Review package instructions and scripts before running them.

View files and uncompressed sizes
Machine-readable installation guide →
CATALOG REVIEW NOTES

Know what you need before installing

Source and packaging checks recorded on 2026-10-03. These notes are not safety certification or measured task performance.

Requirements

Plugin source files and current WordPress.org Plugin Directory guidelines. Upstream declares WordPress 7.0+ and PHP 7.4.0+ compatibility; check the actual project version. This is a documentation-only workflow with three included references, not a plugin or hosted execution service.

Costs, access & practical limits

Rules, trademark restrictions and license compatibility depend on the current project and official sources. Verify every finding against current guidelines and the exact third-party license. This skill and its catalog review do not certify legal compliance or guarantee WordPress.org approval. No agent end-to-end evaluation has been performed here.

View the recorded checks
  • Pinned upstream source and Git blob hashes verified
  • Applicable original license and notices preserved
  • Archive paths and metadata validated
  • Local Markdown and named reference files checked

Upstream commit: 34da134e184ef93d6fb8c074fed309e06b964f34

Runtime status: not tested by this catalog. Configure your client and test the skill in your own environment.

LICENSE & ATTRIBUTION

GPL license & upstream grant

This source package retains the upstream copyright and GPLv2-or-later grant alongside the complete GPLv2 text. Read both before adapting or redistributing it. Keep the notices and supply corresponding source as required by the applicable GPL terms.

GPL-2.0-or-later ↗

Original upstream grant covering the included WordPress skill instructions and references

Attribution: Copyright (C) 2026 WordPress Contributors

Changes: Original upstream source files unchanged; package layout, review metadata and complete license text added by BB Skills.

Included notice: wp-plugin-directory-guidelines/LICENSE.upstream.txt

Declared source ↗

GPL-2.0-or-later ↗

Complete GPLv2 text accompanying the upstream GPLv2-or-later grant

Attribution: Free Software Foundation, Inc.; complete text from SPDX license-list-data

Changes: Complete SPDX licenseText retained unchanged.

Included notice: wp-plugin-directory-guidelines/GPL-2.0-or-later.txt

Declared source ↗
SCENARIOS

Inputs, criteria and recorded outcomes

Records are supplied by the site administrator and bound to a specific package. They are not third-party safety certification. This page does not execute skills.

No published scenario records yet. Resource availability and download counts do not imply measured task performance.

Community reviews

★ New

Be the first to share your experience.

Sign in to leave a review →

More to explore

View all ↗