youtube-batch-transcript-extractor-api-skill

Pass

Audited by Gen Agent Trust Hub on Oct 1, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to ingest and process YouTube transcripts and subtitles, which are untrusted external data sources. This content could theoretically contain malicious instructions intended to mislead or exploit an agent during summarization or media analysis.
  • Ingestion points: Video transcripts and channel metadata are fetched from the BrowserAct API in scripts/youtube_batch_transcript_extractor_api.py and presented to the agent.
  • Boundary markers: There are no explicit delimiters or warning instructions used to isolate the fetched transcripts within the agent's context.
  • Capability inventory: The skill has network access through the requests library and the ability to execute Python scripts as specified in the metadata.
  • Sanitization: The script retrieves and returns transcript data directly without performing escaping or content filtering.
Audit Metadata
Risk Level
SAFE
Analyzed
Oct 1, 2026, 11:51 AM
Security Audit — agent-trust-hub — youtube-batch-transcript-extractor-api-skill