sverchok-impl-topologic

Pass

Audited by Gen Agent Trust Hub on Mar 17, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill facilitates the installation of essential architectural Python libraries including topologicpy, ifcopenshell, specklepy, and honeybee-energy. These are well-known services and repositories within the AEC (Architecture, Engineering, and Construction) community.- [COMMAND_EXECUTION]: Functional components like EnergyModelRunSimulation execute external building energy simulation engines such as OpenStudio or EnergyPlus. This is a core, legitimate operation for the skill's purpose and requires the user to specify the path to their local installation of these tools.- [PROMPT_INJECTION]: Analysis of the skill's architecture identifies an indirect prompt injection surface through the processing of external geometry files (IFC, JSON) combined with file-write and subprocess execution capabilities. Evidence: Ingestion points include IFCReadFile and TopologyByImportedJSONMK2; Boundary markers are absent; Capability inventory includes EnergyModelRunSimulation and GraphExportToCSV; Sanitization of imported geometry strings is not explicitly documented.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 17, 2026, 06:31 PM