reference-to-3d-reconstruction

Warn

Audited by Socket on Aug 22, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the core reconstruction workflow is purpose-aligned and mostly local, but the explicit dependency on transitive third-party skill installation and Blender code execution expands trust beyond this skill’s stated footprint. No direct credential harvesting or exfiltration is evident, so this is not confirmed malware, but it carries meaningful supply-chain risk.

Confidence: 87%Severity: 72%
Audit Metadata
Analyzed At
Aug 22, 2026, 11:11 PM
Package URL
pkg:socket/skills-sh/nvidia-omniverse%2Fomniverse-labs%2Freference-to-3d-reconstruction%2F@bc476813c6cc916e18113a27f86dff31255f1ad3a2aaa5b4888a38cb934cdf53
Security Audit — socket — reference-to-3d-reconstruction