mcore-build-and-dependency

Pass

Audited by Gen Agent Trust Hub on Jul 30, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill instructs users to pull Docker images from registries and specifies dependencies to be fetched from various GitHub repositories, such as TransformerEngine, nemo-run, and FlashMLA. These references are consistent with the Megatron-LM project and its official dependencies.
  • [COMMAND_EXECUTION]: The instructions involve executing various shell commands for container management (docker), package management (uv), and high-performance computing tasks (srun, enroot). It includes a command that uses 'sed' to dynamically identify an internal GitLab registry host from the user's local git configuration.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 30, 2026, 01:41 PM
Security Audit — agent-trust-hub — mcore-build-and-dependency