3d-web-experience

Pass

Audited by Gen Agent Trust Hub on Feb 17, 2026

Risk Level: SAFE
Full Analysis
  • [EXTERNAL_DOWNLOADS] (SAFE): The skill references standard npm packages and industry-standard tools for 3D web development.
  • The package @gltf-transform/cli is a widely used tool for optimizing 3D models.
  • React-based libraries like @react-three/fiber and @react-three/drei are part of the official ecosystem for Three.js in React.
  • [REMOTE_CODE_EXECUTION] (SAFE): No remote code execution patterns detected. The skill uses a placeholder URL for a Spline scene (https://prod.spline.design/xxx/scene.splinecode), which is standard usage for that specific tool and does not constitute a security risk in this context.
  • [COMMAND_EXECUTION] (SAFE): Includes a shell command for model optimization (gltf-transform optimize). This is a legitimate development task and does not involve any obfuscation or suspicious parameters.
Audit Metadata
Risk Level
SAFE
Analyzed
Feb 17, 2026, 06:32 PM