config-presets

Pass

Audited by Gen Agent Trust Hub on Aug 25, 2026

Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides instructions to execute the usdOptimize command-line tool using the Shell tool. The command targets a local binary within a build directory and utilizes local JSON configuration presets. This is standard operational behavior for the tool's intended purpose.
  • [INDIRECT_PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection through the ingestion of external USD files and JSON configurations.
  • Ingestion points: input.usd and config_presets/*.json in SKILL.md.
  • Boundary markers: None explicitly defined to separate data from instructions within the tool's input.
  • Capability inventory: The skill utilizes the Shell tool to execute usdOptimize and the Read tool to access configuration files.
  • Sanitization: No specific sanitization or validation of the USD content is described prior to processing by the optimization tool.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 25, 2026, 07:54 AM
Security Audit — agent-trust-hub — config-presets