simple-vector-triton-gpu-to-npu

Pass

Audited by Gen Agent Trust Hub on Apr 8, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill is a legitimate technical guide. No malicious patterns, such as prompt injection, data exfiltration, or obfuscation, were detected across any of the files.
  • [EXTERNAL_DOWNLOADS]: The skill suggests installing 'triton-ascend' and 'torch-npu'. These are standard, vendor-aligned packages for NPU development and do not represent a security risk.
  • [COMMAND_EXECUTION]: Scripts included for environment checking and accuracy verification (scripts/check_environment.py and scripts/verify_accuracy.py) are transparent and perform expected technical functions locally.
  • [PROMPT_INJECTION]: While the skill analyzes user-provided code, which is an inherent surface for indirect prompt injection, it does not provide an exploitable path for such an attack, and the context is restricted to technical analysis.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 8, 2026, 06:06 AM