slideshow
Warn
Audited by Snyk on Sep 13, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (medium risk: 0.30). The referenced Three.js CDN script (
https://cdn.jsdelivr.net/npm/three@0.160.0/build/three.module.js) is an explicit remote operational dependency that loads runtime code used to execute the Three.js scene behavior, falling under common/reputable unofficial provenance with a medium tier.
Issues (1)
W012
MEDIUMUnverifiable external dependency detected (runtime URL that controls agent).
Audit Metadata