threejs-ecs-ts

Warn

Audited by Gen Agent Trust Hub on Jun 25, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides instructions to install additional components via the command npx skills add Nice-Wolf-Studio/claude-skills-threejs-ecs-ts. This fetches code from a third-party GitHub repository belonging to Nice-Wolf-Studio, which is an unverified external source.
  • [COMMAND_EXECUTION]: The documentation explicitly guides the agent to use shell access or the ! shell command prefix to execute the installation command. This results in the execution of code downloaded from an external third-party repository on the host system.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 25, 2026, 06:33 PM
Security Audit — agent-trust-hub — threejs-ecs-ts