alterlab-genai-voice-cloner
Pass
Audited by Gen Agent Trust Hub on Apr 5, 2026
Risk Level: SAFEPROMPT_INJECTION
Full Analysis
- [PROMPT_INJECTION]: The skill's autonomous workflow introduces a risk of indirect prompt injection.
- Ingestion points: The agent is directed to 'search the web' for platform updates and 'read existing project files' for context in SKILL.md.
- Boundary markers: The instructions do not define delimiters or explicit 'ignore embedded instructions' warnings for the data it ingests from external sources.
- Capability inventory: The agent has permissions to read files, write files (such as checklists and reports) to the local project directory, and perform web searches as described in SKILL.md.
- Sanitization: There is no evidence of data sanitization, escaping, or validation of external input before it is interpolated into the agent's context or written to files.
Audit Metadata