hyperpod-nccl

Pass

Audited by Gen Agent Trust Hub on Sep 15, 2026

Risk Level: SAFECOMMAND_EXECUTIONDYNAMIC_EXECUTIONREMOTE_CODE_EXECUTIONOBFUSCATION
Full Analysis
  • [COMMAND_EXECUTION]: The main script 'scripts/nccl-diagnose.sh' executes local CLI tools including 'aws', 'kubectl', and 'jq' to gather state from the AWS account and EKS cluster.
  • [DYNAMIC_EXECUTION]: The skill utilizes Python and Bash one-liners for data manipulation. It specifically constructs and executes a multi-line shell script at runtime as part of its SSM-based hardware diagnostic routine.
  • [REMOTE_CODE_EXECUTION]: The skill facilitates the execution of diagnostic scripts on remote SageMaker HyperPod compute nodes using the AWS Systems Manager (SSM) service and the 'start-session' API.
  • [OBFUSCATION]: Base64 encoding is used within 'scripts/nccl-diagnose.sh' to encode the diagnostic shell script for transport to the target node via the SSM command line.
  • [SAFE]: The skill's behavior is consistent with its stated purpose as a diagnostic tool for HyperPod clusters and is authored by the official vendor 'awslabs'. All identified execution patterns are contained within the intended functionality for debugging and health checking.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 15, 2026, 05:58 PM
Security Audit — agent-trust-hub — hyperpod-nccl