gke-batch-hpc
Warn
Audited by Snyk on Jun 25, 2026
Risk Level: MEDIUM
Full Analysis
MEDIUM W012: Unverifiable external dependency detected (runtime URL that controls agent).
- Potentially malicious external URL detected (high risk: 0.90). The skill contains runtime kubectl apply commands that fetch and apply remote Kubernetes manifests—https://github.com/kubernetes-sigs/kueue/releases/latest/download/manifests.yaml and https://raw.githubusercontent.com/kubeflow/mpi-operator/master/deploy/v2beta1/mpi-operator.yaml—which will execute external configuration/code on the cluster and are required for the Kueue and MPI operator sections.
Issues (1)
W012
MEDIUMUnverifiable external dependency detected (runtime URL that controls agent).
Audit Metadata