skills/nvidia/skills/doca-urom-svc/Gen Agent Trust Hub

doca-urom-svc

Pass

Audited by Gen Agent Trust Hub on Jul 28, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is entirely documentation-based and does not include any executable scripts or configuration files that could pose a direct risk to the host or environment.
  • [SAFE]: Data protection is addressed by documenting that the DOCA UROM Service binary lacks standalone access control, explicitly warning operators to rely on DOCA Comch pairing and RDMA permissions for isolation.
  • [SAFE]: Remote resources are managed safely by directing users to the official NVIDIA NGC registry and DOCA documentation for image pulls and configuration values, avoiding hardcoded or untrusted URLs.
  • [SAFE]: The skill implements strict path-selection and safety policies, requiring hardware capability checks and version matching (paired contract) before deployment to prevent subtle runtime failures.
  • [SAFE]: No obfuscation, persistence mechanisms, or privilege escalation patterns were found in the instructional content or metadata.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 28, 2026, 05:09 PM
Security Audit — agent-trust-hub — doca-urom-svc