nemo-relay-plugin-build

Pass

Audited by Gen Agent Trust Hub on Jul 17, 2026

Risk Level: SAFENO_CODE
Full Analysis
  • [SAFE]: The skill is primarily instructional and does not include any executable code or automation that could perform unauthorized actions on the host system.
  • [NO_CODE]: The skill package contains only Markdown documentation and JSON evaluation files. It does not ship with any Python scripts, shell scripts, or binary executables.
  • [CREDENTIALS_UNSAFE]: The skill actively promotes secure configuration management by instructing developers to avoid embedding sensitive information.
  • Evidence: SKILL.md contains explicit warnings: "Do not put... credentials... in plugin config" and "Use references to secrets or endpoints rather than embedding sensitive values."
  • [EXTERNAL_DOWNLOADS]: The skill documentation references official vendor-controlled resources which are used for informational purposes.
  • Evidence: skill-card.md points to the official NVIDIA NeMo-Relay GitHub repository.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 17, 2026, 06:04 PM
Security Audit — agent-trust-hub — nemo-relay-plugin-build