simready-foundation-conform-fet-001-standard
Pass
Audited by Gen Agent Trust Hub on Oct 3, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTIONCOMMAND_EXECUTION
Full Analysis
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted external data (USD assets and validation reports) and performs file operations and shell command execution based on that data.
- Ingestion points: The skill ingests
usd_assetandvalidation_report(JSON or Markdown) as primary inputs inSKILL.md. - Boundary markers: The instructions do not specify any boundary markers or instructions to isolate the agent from potential malicious instructions embedded in the external asset files or reports.
- Capability inventory: The skill allows for file system writes (to repair USD assets) and shell command execution using the
uv runutility inSKILL.md. - Sanitization: No sanitization or validation of the content within the input assets or reports is performed before the agent processes and acts upon them.
- [COMMAND_EXECUTION]: The skill instructs the agent to execute shell commands using
uv runinSKILL.mdto perform asset validation. These commands, such asvalidate-usd-minimumandvalidate-simready-profile, take variables derived from inputs like<staged-usd>and<profile>.
Audit Metadata