vss-summarize-video

Pass

Audited by Gen Agent Trust Hub on Jul 16, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill provides documented shell commands using curl, jq, and docker to manage microservice lifecycles and perform API interactions. These commands are necessary for the skill's purpose and are directed at local or vendor-controlled endpoints.
  • [EXTERNAL_DOWNLOADS]: References to external container images and software artifacts point exclusively to NVIDIA's official registry (nvcr.io) or well-known, official service repositories (e.g., Neo4j, ArangoDB), which are recognized as trusted sources for this ecosystem.
  • [CREDENTIALS_UNSAFE]: The skill implements secure secret management by instructing the agent to utilize existing environment variables (e.g., NVIDIA_API_KEY, NGC_CLI_API_KEY) for authentication headers. All provided configuration examples use non-functional placeholders such as nvapi-REPLACE_ME.
  • [DATA_EXFILTRATION]: Network activity is restricted to operational API calls to the video summarization service and related microservices. No patterns indicating the transmission of sensitive local data to unauthorized remote domains were identified.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 16, 2026, 03:45 PM
Security Audit — agent-trust-hub — vss-summarize-video