simready-foundation-conform-fet-001-minimal

Pass

Audited by Gen Agent Trust Hub on Jul 3, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a standard technical workflow for 3D asset maintenance. It demonstrates no malicious intent, obfuscation, or unauthorized data access.
  • [COMMAND_EXECUTION]: The skill utilizes uv run to execute local validation scripts such as validate-usd-minimum and validate-simready-profile. These tools are consistent with the skill's purpose and the author's (NVIDIA) SimReady ecosystem.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes external USD assets (usd_asset), which constitutes an attack surface for indirect prompt injection. However, the risk is mitigated by the mechanical nature of the repairs and the use of domain-specific validation tools.
  • Ingestion points: usd_asset parameter in SKILL.md.
  • Boundary markers: Not explicitly defined for the USD content.
  • Capability inventory: Shell execution of validation tools via uv run in SKILL.md.
  • Sanitization: Not explicitly detailed, but the workflow relies on standard USD parsing and external validators.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 3, 2026, 11:05 AM
Security Audit — agent-trust-hub — simready-foundation-conform-fet-001-minimal