ifc-agents-model-author
Pass
Audited by Gen Agent Trust Hub on Aug 9, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No malicious patterns or security risks were identified in the analyzed skill. The content is purely instructional and focused on the technical domain of IFC model authoring.
- [PROMPT_INJECTION]: The skill uses natural instructional language to guide the AI agent's behavior for IFC authoring (e.g., 'ALWAYS author an IFC model in dependency order'). These instructions do not attempt to bypass safety filters or override the agent's core system prompt.
- [DATA_EXFILTRATION]: There is no evidence of commands that access sensitive files, environment variables, or hardcoded credentials. No network operations or non-whitelisted domain interactions were found.
- [REMOTE_CODE_EXECUTION]: The skill does not perform any external downloads or execute scripts from remote sources. It references other modular skills within the agent's environment, which is standard orchestration behavior.
- [COMMAND_EXECUTION]: No dangerous system commands, privilege escalation attempts (sudo), or persistence mechanisms (cron, shell profiles) are present.
- [OBFUSCATION]: The content is provided in clear text. No Base64, hex encoding, zero-width characters, or homoglyph-based obfuscation techniques were detected.
- [EXTERNAL_DOWNLOADS]: The skill contains links to official Industry Foundation Classes (IFC) documentation from buildingSMART. These are well-known, trusted domains for the specific domain of building information modeling and do not pose a security risk.
Audit Metadata