skills/nvidia/skills/doca-argus/Gen Agent Trust Hub

doca-argus

Pass

Audited by Gen Agent Trust Hub on Jul 28, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTIONNO_CODE
Full Analysis
  • [SAFE]: The skill is primarily instructional and does not contain executable code, obfuscated content, or persistence mechanisms. It emphasizes a 'safety-first' approach for security operators.
  • [COMMAND_EXECUTION]: Legitimate use of container orchestration commands (e.g., docker, crictl) is described for managing the Argus service on the BlueField OS, following documented vendor patterns.
  • [EXTERNAL_DOWNLOADS]: The skill instructs the agent to guide users to pull container images from the official NVIDIA NGC registry, which is a trusted and well-known source for DOCA software.
  • [PROMPT_INJECTION]: The instructions include clear boundaries and refusal patterns for out-of-scope tasks, such as installing DOCA or building custom tools using policy-excluded libraries, preventing behavioral drift.
  • [NO_CODE]: As verified in the skill card and file contents, this bundle ships no runnable scripts or binaries, consisting entirely of documentation and guidance artifacts.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 28, 2026, 05:10 PM
Security Audit — agent-trust-hub — doca-argus