doca-socket-relay
Pass
Audited by Gen Agent Trust Hub on Jul 18, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill serves as a documentation loader and provides structured instructions for deployment shape selection, tool configuration, and debugging workflows.
- [SAFE]: External URLs referenced in the documentation target trusted vendor domains (nvidia.com) and official GitHub repositories (github.com/NVIDIA-DOCA) for SDK documentation and samples.
- [SAFE]: The signature file
skill.oms.sigcontains standard integrity metadata, including cryptographic hashes and provenance certificates, which are consistent with software security best practices. - [SAFE]: Command execution instructions in
TASKS.mdinvolve standard tool invocation (doca_socket_relay) and diagnostic commands intended for system operators. - [SAFE]: Guidance regarding privileged operations, such as the use of
sudo, is contextually limited to legitimate hardware-level configuration and socket management on BlueField DPUs. - [SAFE]: The skill documents the ingestion of tool log data for observability purposes; while this represents a theoretical surface for indirect input, it is a standard operational requirement and lacks malicious intent or exploitable patterns in this context.
Audit Metadata