Skip to content

Conversation

lwsinclair
Copy link

Hi there,

This pull request shares a security update on NeMo-Agent-Toolkit.

We also have an entry for NeMo-Agent-Toolkit in our directory, MseeP.ai, where we provide regular security and trust updates on your app.

We invite you to add our badge for your MCP server to your README to help your users learn from a third party that provides ongoing validation of NeMo-Agent-Toolkit.

You can easily take control over your listing for free: visit it at https://mseep.ai/app/nvidia-nemo-agent-toolkit.

Yours Sincerely,

Lawrence W. Sinclair
CEO/SkyDeck AI
Founder of MseeP.ai
MCP servers you can trust


MseeP.ai Security Assessment Badge

Here are our latest evaluation results of NeMo-Agent-Toolkit

Security Scan Results

Security Score: 94/100

Risk Level: low

Scan Date: 2025-06-17

Score starts at 100, deducts points for security issues, and adds points for security best practices

Security Findings

Medium Severity Issues

  • semgrep: Use of subprocess with shell=True detected. This can be dangerous if used with untrusted input.

    • Location: docs/source/conf.py
    • Line: 64
  • semgrep: Use of subprocess with shell=True detected. This can be dangerous if used with untrusted input.

    • Location: scripts/setup_datasets.py
    • Line: 27
  • ... and 1 more medium severity issues

Low Severity Issues

  • semgrep: Use of base64 decoding detected. This might indicate obfuscated code.

This security assessment was conducted by MseeP.ai, an independent security validation service for MCP servers. Visit our website to learn more about our security reviews.

Copy link

copy-pr-bot bot commented Jul 5, 2025

This pull request requires additional validation before any workflows can run on NVIDIA's runners.

Pull request vetters can view their responsibilities here.

Contributors can view more details about this message here.

@yczhang-nv yczhang-nv added feature request New feature or request non-breaking Non-breaking change labels Jul 9, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
feature request New feature or request non-breaking Non-breaking change
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants