threejs-interaction
Fail
Audited by Gen Agent Trust Hub on Sep 13, 2026
Risk Level: CRITICAL
Full Analysis
- [SAFE]: The skill is a reference guide for Three.js development. It contains standard JavaScript code snippets for implementing features like OrbitControls and Raycasting.
- [CREDENTIALS_UNSAFE]: No hardcoded credentials, API keys, or secrets were found in the skill content.
- [REMOTE_CODE_EXECUTION]: No remote code execution patterns, such as piping network downloads to a shell or using dangerous dynamic execution functions (e.g., eval, exec), were detected.
- [DATA_EXFILTRATION]: No network operations to unknown or suspicious domains were found. The skill does not attempt to access or exfiltrate sensitive files like SSH keys or environment variables.
- [OBFUSCATION]: The content is provided in plain text. No hidden characters, Base64-encoded payloads, or homoglyph attacks were detected.
Recommendations
- CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
Audit Metadata