hz-unity-platform-sdk — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited hz-unity-platform-sdk (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Use this skill when a developer:
com.meta.xr.sdk.platform)Core.AsyncInitialize, Oculus.Platform, or platform message handlingFor Android/Kotlin apps, use the hz-platform-sdk skill instead.
com.meta.xr.sdk.platform via Unity Package ManagerOculus.Platform (backward compatible with legacy LibOVRPlatform SDK)| Feature | Reference | Description |
|---|---|---|
| Abuse Report | abuse-report | Listen for system Report button events, respond with in-app flow |
| Achievements | achievements | Unlock, track progress, and query simple/count/bitfield achievements |
| Application | application | Get app version, launch other apps, manage self-update downloads |
| Application Lifecycle | application-lifecycle | Detect launch type, handle deeplinks and invites, log results |
| Asset File | asset-file | List, download, cancel, and delete downloadable asset files (DLC) |
| Challenges | challenges | Time-bound score competitions on top of leaderboards |
| Consent | consent | Check and launch user consent flows with version bumps |
| Device Application Integrity | device-application-integrity | Verify device and app integrity via JWT attestation |
| Entitlements | entitlements | Mandatory anti-piracy check required for all Store apps |
| Group Presence | group-presence | Set/clear presence, manage sessions, send invites, handle join intents |
| In-App Purchases (IAP) | iap | Retrieve products, purchase history, checkout flow, consume purchases |
| Language Pack | language-pack | Get/set language packs with auto-download |
| Leaderboards | leaderboards | Retrieve leaderboard info, fetch/write entries with filtering |
| Notifications | notifications | Send device notifications with toast, feed persistence, and action buttons |
| Rate and Review | rate-and-review | Check eligibility and launch the system rating/review UI |
| Rich Presence | rich-presence | Set/clear rich presence (deprecated; prefer group-presence) |
| User Age Category | user-age-category | Query user age group and report age categories for compliance |
| Users | users | Retrieve user profiles, friends, access tokens, identity verification |
references/common-setup.md for shared setup instructions, initialization code, Editor testing, and common patterns that apply to all APIs.references/iap.md for in-app purchases).Each reference file contains only the package-specific content: API operations, data types, examples, and package-specific notes. The common setup, initialization patterns, and coding conventions are centralized in common-setup.md to avoid duplication.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.