usd-pipeline

Pass

Audited by Gen Agent Trust Hub on Jul 30, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: No security issues were detected. The skill provides legitimate instructions for NVIDIA Omniverse developers.
  • [DATA_EXPOSURE]: The skill utilizes local file discovery techniques such as glob and os.path to identify USD assets within a directory tree. This behavior is necessary for its primary function of asset cataloging and measurement. No sensitive directories or hardcoded credentials were found.
  • [COMMAND_EXECUTION]: The skill contains standard shell commands for managing virtual framebuffers (Xvfb) and launching the Isaac Sim application. These operations are routine for headless rendering workflows in simulation environments.
  • [REMOTE_CODE_EXECUTION]: Python scripts within the skill utilize industry-standard libraries including Pixar USD (pxr) and NVIDIA Isaac Sim (isaacsim). There are no patterns involving remote code fetching, unverified dependencies, or unsafe execution of dynamic code.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 30, 2026, 03:03 PM
Security Audit — agent-trust-hub — usd-pipeline