threejs-loaders

Pass

Audited by Gen Agent Trust Hub on Sep 13, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADS
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill includes examples for configuring Draco and KTX2 loaders which fetch decoders and transcoders from external URLs. These references point to well-known and established services, specifically Google's gstatic domain and the jsDelivr CDN, which is standard practice for Three.js development.
  • [SAFE]: The skill's functionality is strictly limited to 3D asset management and rendering logic. The examples provided, such as base64 data URIs and external asset loading, are used legitimately within the context of graphics programming and do not exhibit signs of data exfiltration or unauthorized command execution.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 13, 2026, 12:09 AM
Security Audit — agent-trust-hub — threejs-loaders