oce-bim-takeoff

Pass

Audited by Gen Agent Trust Hub on Aug 24, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: The skill provides documentation for a BIM takeoff workflow within OpenConstructionERP. No malicious code, prompt injections, or unauthorized data access patterns were detected.
  • [NO_CODE]: The skill consists entirely of markdown documentation and instructions for using an external API service. It does not include or execute any scripts, binaries, or automated code.
  • [PROMPT_INJECTION]: The skill describes an ingestion surface for architectural files (Revit, IFC, DWG). This is categorized as safe because it describes standard data processing for takeoff software without providing instructions that execute untrusted content as commands.
  • Ingestion points: File uploads (RVT, IFC, DWG, PDF) to the /api/v1/bim/ endpoints.
  • Boundary markers: None specified in the documentation.
  • Capability inventory: Geometric analysis and metadata linking.
  • Sanitization: Handled by vendor-provided DDC converters.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 24, 2026, 01:21 AM
Security Audit — agent-trust-hub — oce-bim-takeoff