doca-container-deployment
Pass
Audited by Gen Agent Trust Hub on Jul 28, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill provides operational instructions for infrastructure deployment on BlueField DPUs. No malicious intent, obfuscation, or persistence mechanisms were identified during the analysis.
- [EXTERNAL_DOWNLOADS]: The skill facilitates pulling container images from the official NVIDIA Container Registry at
nvcr.io. This is a documented, standard operation for the skill's primary purpose and uses a trusted vendor domain. - [COMMAND_EXECUTION]: The skill guides the agent in providing shell commands for checking system state, versions, and container logs. It includes strong safety constraints, explicitly warning the agent not to invent flags or paths and to quote only from official documentation.
- [PROMPT_INJECTION]: The instructions do not contain patterns designed to bypass safety filters or override core agent behavior. Instead, it incorporates safety-oriented policies such as 'smoke before bulk' testing and high-stakes error handling.
- [CREDENTIALS_UNSAFE]: No hardcoded secrets, API keys, or private tokens were discovered. The skill card explicitly reminds users not to include secrets in prompts or logs.
Audit Metadata