threejs-interaction

Fail

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: CRITICAL
Full Analysis
  • [SAFE]: The skill is a reference guide for Three.js development. It contains standard JavaScript code snippets for implementing features like OrbitControls and Raycasting.
  • [CREDENTIALS_UNSAFE]: No hardcoded credentials, API keys, or secrets were found in the skill content.
  • [REMOTE_CODE_EXECUTION]: No remote code execution patterns, such as piping network downloads to a shell or using dangerous dynamic execution functions (e.g., eval, exec), were detected.
  • [DATA_EXFILTRATION]: No network operations to unknown or suspicious domains were found. The skill does not attempt to access or exfiltrate sensitive files like SSH keys or environment variables.
  • [OBFUSCATION]: The content is provided in plain text. No hidden characters, Base64-encoded payloads, or homoglyph attacks were detected.
Recommendations
  • CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Sep 13, 2026, 12:09 AM
Security Audit — agent-trust-hub — threejs-interaction