nvflare-autofl
Pass
Audited by Gen Agent Trust Hub on Sep 14, 2026
Risk Level: SAFECOMMAND_EXECUTION
Full Analysis
- [COMMAND_EXECUTION]: Spawns simulation and verification processes via
subprocess.Popeninsidescripts/run_job_campaign.pyandscripts/plot_progress.pyto runjob.pyscripts. These calls are part of the core functionality to simulate candidate variations and plot progress, utilizing hardcoded Python interpreter path constraints and environment sanitization templates (a fixed allowlist of safe system variables likePATH,VIRTUAL_ENV,HOME, etc.) to prevent environment drift or command injection.
Audit Metadata