webgl-landing-steering

Pass

Audited by Gen Agent Trust Hub on Aug 16, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill references external resources in REFERENCES.md, all of which target well-known and trusted documentation services including Three.js, MDN Web Docs, web.dev, and the W3C. No executable code or unverified third-party dependencies are requested.
  • [DATA_EXFILTRATION]: No network operations, hardcoded credentials, or sensitive file access patterns were detected. The demo implementation in demo/index.html is entirely self-contained and uses standard browser APIs for visual rendering.
  • [REMOTE_CODE_EXECUTION]: There is no evidence of remote script execution or dynamic code loading from untrusted sources. The skill specifically instructs against using external frameworks or package managers for its demo implementation.
  • [COMMAND_EXECUTION]: The skill does not contain instructions to execute shell commands or interact with the underlying operating system. No use of the dynamic context injection (!command) pattern was found.
  • [PROMPT_INJECTION]: The prompting template provided in SKILL.md is designed to structure agent output for legitimate creative tasks. It does not attempt to bypass safety filters or override system-level instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 16, 2026, 07:32 AM
Security Audit — agent-trust-hub — webgl-landing-steering