alterlab-genai-voice-cloner

Pass

Audited by Gen Agent Trust Hub on Apr 5, 2026

Risk Level: SAFEPROMPT_INJECTION
Full Analysis
  • [PROMPT_INJECTION]: The skill's autonomous workflow introduces a risk of indirect prompt injection.
  • Ingestion points: The agent is directed to 'search the web' for platform updates and 'read existing project files' for context in SKILL.md.
  • Boundary markers: The instructions do not define delimiters or explicit 'ignore embedded instructions' warnings for the data it ingests from external sources.
  • Capability inventory: The agent has permissions to read files, write files (such as checklists and reports) to the local project directory, and perform web searches as described in SKILL.md.
  • Sanitization: There is no evidence of data sanitization, escaping, or validation of external input before it is interpolated into the agent's context or written to files.
Audit Metadata
Risk Level
SAFE
Analyzed
Apr 5, 2026, 11:44 PM
Security Audit — agent-trust-hub — alterlab-genai-voice-cloner