video-subtitles
Pass
Audited by Gen Agent Trust Hub on Sep 3, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The script
scripts/generate_srt.pyusessubprocess.runto executeffmpegfor embedding or burning subtitles into video files. The implementation safely passes arguments as a list rather than a single string, which effectively prevents shell injection attacks. - [EXTERNAL_DOWNLOADS]: Upon first use, the skill downloads large-scale machine learning models (approximately 3GB) from Hugging Face, including OpenAI's Whisper models and fine-tuned Hebrew models from the
ivrit-aiorganization. These are fetched from a well-known service for AI model hosting. - [INDIRECT_PROMPT_INJECTION]: The skill possesses a surface for indirect prompt injection because it processes user-provided audio and video files containing untrusted speech data.
- Ingestion points:
scripts/generate_srt.pyreads data through theWhisperModel.transcribefunction. - Boundary markers: The system does not use specific delimiters for spoken content within the audio stream.
- Capability inventory: The skill uses
subprocess.runto callffmpegand writes subtitle files to the local disk. - Sanitization: Arguments for external commands are correctly tokenized in a list to prevent execution of injected shell commands. The risk is minimized as the output is restricted to transcription text and video rendering.
Audit Metadata