usd-pipeline
Pass
Audited by Gen Agent Trust Hub on Jul 30, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: No security issues were detected. The skill provides legitimate instructions for NVIDIA Omniverse developers.
- [DATA_EXPOSURE]: The skill utilizes local file discovery techniques such as
globandos.pathto identify USD assets within a directory tree. This behavior is necessary for its primary function of asset cataloging and measurement. No sensitive directories or hardcoded credentials were found. - [COMMAND_EXECUTION]: The skill contains standard shell commands for managing virtual framebuffers (Xvfb) and launching the Isaac Sim application. These operations are routine for headless rendering workflows in simulation environments.
- [REMOTE_CODE_EXECUTION]: Python scripts within the skill utilize industry-standard libraries including Pixar USD (
pxr) and NVIDIA Isaac Sim (isaacsim). There are no patterns involving remote code fetching, unverified dependencies, or unsafe execution of dynamic code.
Audit Metadata