skills/openaec-foundation/blender-bonsai-ifcopenshell-sverchok-claude-skill-package/sverchok-impl-topologic/Gen Agent Trust Hub
sverchok-impl-topologic
Pass
Audited by Gen Agent Trust Hub on Mar 17, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill facilitates the installation of essential architectural Python libraries including
topologicpy,ifcopenshell,specklepy, andhoneybee-energy. These are well-known services and repositories within the AEC (Architecture, Engineering, and Construction) community.- [COMMAND_EXECUTION]: Functional components likeEnergyModelRunSimulationexecute external building energy simulation engines such as OpenStudio or EnergyPlus. This is a core, legitimate operation for the skill's purpose and requires the user to specify the path to their local installation of these tools.- [PROMPT_INJECTION]: Analysis of the skill's architecture identifies an indirect prompt injection surface through the processing of external geometry files (IFC, JSON) combined with file-write and subprocess execution capabilities. Evidence: Ingestion points includeIFCReadFileandTopologyByImportedJSONMK2; Boundary markers are absent; Capability inventory includesEnergyModelRunSimulationandGraphExportToCSV; Sanitization of imported geometry strings is not explicitly documented.
Audit Metadata