vss-summarize-video
Pass
Audited by Gen Agent Trust Hub on Jul 16, 2026
Risk Level: SAFE
Full Analysis
- [COMMAND_EXECUTION]: The skill provides documented shell commands using
curl,jq, anddockerto manage microservice lifecycles and perform API interactions. These commands are necessary for the skill's purpose and are directed at local or vendor-controlled endpoints. - [EXTERNAL_DOWNLOADS]: References to external container images and software artifacts point exclusively to NVIDIA's official registry (
nvcr.io) or well-known, official service repositories (e.g., Neo4j, ArangoDB), which are recognized as trusted sources for this ecosystem. - [CREDENTIALS_UNSAFE]: The skill implements secure secret management by instructing the agent to utilize existing environment variables (e.g.,
NVIDIA_API_KEY,NGC_CLI_API_KEY) for authentication headers. All provided configuration examples use non-functional placeholders such asnvapi-REPLACE_ME. - [DATA_EXFILTRATION]: Network activity is restricted to operational API calls to the video summarization service and related microservices. No patterns indicating the transmission of sensitive local data to unauthorized remote domains were identified.
Audit Metadata