threejs-ecs-ts
Warn
Audited by Gen Agent Trust Hub on Jun 25, 2026
Risk Level: MEDIUMEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill provides instructions to install additional components via the command
npx skills add Nice-Wolf-Studio/claude-skills-threejs-ecs-ts. This fetches code from a third-party GitHub repository belonging to Nice-Wolf-Studio, which is an unverified external source. - [COMMAND_EXECUTION]: The documentation explicitly guides the agent to use shell access or the
!shell command prefix to execute the installation command. This results in the execution of code downloaded from an external third-party repository on the host system.
Audit Metadata