narova-elevenlabs
Pass
Audited by Gen Agent Trust Hub on Aug 22, 2026
Risk Level: SAFE
Full Analysis
- [CREDENTIALS_UNSAFE]: The skill correctly handles sensitive information by instructing users to store the
ELEVENLABS_API_KEYin environment variables rather than hardcoding it. The worker scripts useos.environto retrieve the key and explicitly avoid logging or printing it. - [COMMAND_EXECUTION]: Uses
subprocess.runto invokeffmpegfor audio conversion. The implementation is secure as it uses a fixed argument list withshell=False. Furthermore, output paths are strictly validated to ensure they are absolute, regular files, and not symlinks, mitigating path traversal or overwrite attacks. - [EXTERNAL_DOWNLOADS]: Connectivity is limited to the official ElevenLabs API (
api.elevenlabs.io). The skill utilizes Python's standard library (urllib.request) for network operations and requires no external third-party packages, reducing the supply chain attack surface. - [DATA_EXFILTRATION]: No evidence of unauthorized data transmission was found. Network requests are strictly functional (TTS synthesis and voice listing) and do not access or transmit sensitive system files or local configuration data.
- [PROMPT_INJECTION]: The skill's instructions are focused on configuration and operation. There are no attempts to override agent behavior, bypass safety guardrails, or solicit sensitive information through instructional patterns.
Audit Metadata