elevenlabs-tts
Pass
Audited by Gen Agent Trust Hub on Jul 28, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill follows security best practices by retrieving the ElevenLabs API key from the environment or a local .env file instead of hardcoding credentials.
- [COMMAND_EXECUTION]: The skill includes a Python script that performs expected file system and network operations related to generating and saving audio files. Analysis confirms the script only communicates with the official ElevenLabs API (api.elevenlabs.io).
- [INDIRECT_PROMPT_INJECTION]: The skill has an ingestion surface for processing text files; however, the script logic and the agent's usage pattern do not expose dangerous capabilities that could be exploited by malicious text content.
Audit Metadata