huggingface-zerogpu

Pass

Audited by Gen Agent Trust Hub on Aug 15, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: Provides a shell command pipeline using curl and python3 to query and verify PyPI metadata for compatible torch-family dependency versions.
  • [COMMAND_EXECUTION]: Includes instructions for using the uv package manager to export dependencies while filtering platform-reserved packages like spaces.
  • [EXTERNAL_DOWNLOADS]: Directs users to download pre-compiled CUDA wheels from the official Dao-AILab/flash-attention GitHub repository releases.
  • [SAFE]: The skill provides detailed architectural guidance on ZeroGPU's process isolation, pickle serialization constraints, and concurrency safety without introducing malicious instructions.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 15, 2026, 03:43 AM
Security Audit — agent-trust-hub — huggingface-zerogpu