simready-foundation-conform-fet-000-standard
Pass
Audited by Gen Agent Trust Hub on Oct 3, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill instructs the agent to run
apply-simready-foundation-metadataandvalidate-simready-profileusing theuvrunner. These tools are specific to the NVIDIA SimReady foundation and are used for asset metadata repair and conformance validation. - [INDIRECT_PROMPT_INJECTION]: The skill ingests untrusted data from validation reports (JSON/Markdown) and USD assets to identify and fix conformance issues. This creates an attack surface where instructions could theoretically be embedded in the processed data.
- Ingestion points:
usd_asset,validation_report, andFET_000_STANDARDmanifest files located in the repository. - Boundary markers: The instructions lack specific delimiters or "ignore embedded instructions" warnings when processing the contents of external reports.
- Capability inventory: The skill possesses file-write capabilities for staging repaired assets and shell execution capabilities via
uv runfor validation tasks. - Sanitization: No explicit sanitization, filtering, or escaping of the content within the ingested validation reports is defined in the workflow.
Audit Metadata