doca-argus
Pass
Audited by Gen Agent Trust Hub on Jul 28, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSPROMPT_INJECTIONNO_CODE
Full Analysis
- [SAFE]: The skill is primarily instructional and does not contain executable code, obfuscated content, or persistence mechanisms. It emphasizes a 'safety-first' approach for security operators.
- [COMMAND_EXECUTION]: Legitimate use of container orchestration commands (e.g.,
docker,crictl) is described for managing the Argus service on the BlueField OS, following documented vendor patterns. - [EXTERNAL_DOWNLOADS]: The skill instructs the agent to guide users to pull container images from the official NVIDIA NGC registry, which is a trusted and well-known source for DOCA software.
- [PROMPT_INJECTION]: The instructions include clear boundaries and refusal patterns for out-of-scope tasks, such as installing DOCA or building custom tools using policy-excluded libraries, preventing behavioral drift.
- [NO_CODE]: As verified in the skill card and file contents, this bundle ships no runnable scripts or binaries, consisting entirely of documentation and guidance artifacts.
Audit Metadata