react-three-fiber

Pass

Audited by Gen Agent Trust Hub on Mar 12, 2026

Risk Level: SAFE
Full Analysis
  • [Input Validation]: The skill utilizes Zod schemas (such as materialSchema and transformProps) to validate the structure and content of 3D scene specifications. This is a strong security practice that ensures only expected data is processed by the renderer.
  • [Asset Loading]: The 'Model' component is designed to load 3D assets from external URLs. This is standard functionality for 3D rendering engines. As a best practice, users should verify that asset URLs originate from trusted domains.
  • [Dependency Context]: The skill lists several peer dependencies including Three.js and React. These are well-known, industry-standard libraries. The core functional packages belong to the '@json-render' scope, which is associated with the skill's author.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 12, 2026, 06:42 PM