skills/0xsline/openchatcut/music/Gen Agent Trust Hub

music

Pass

Audited by Gen Agent Trust Hub on Jul 29, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill defines a structured way to interact with third-party music generation APIs (Mureka and MiniMax). It provides comprehensive documentation on modes, capabilities, and tool usage.
  • [DATA_EXFILTRATION]: The skill facilitates the transfer of media assets and prompts to external providers (Mureka and MiniMax). This is the intended primary purpose of the skill. No evidence of unauthorized data exfiltration or credential harvesting was found.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied strings (prompts and lyrics) and asset identifiers. While these ingestion points represent a surface for indirect injection against the target music generation services, the risk is minimal and inherent to the functionality of a generative AI tool. The skill includes rules to ensure explicit user requests and prevent silent cost multiplication.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 29, 2026, 03:02 PM
Security Audit — agent-trust-hub — music