youtube-downloader
Pass
Audited by Gen Agent Trust Hub on Sep 19, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The script
scripts/download_video.pyexecutes theyt-dlpandffmpegbinaries to facilitate video downloads and processing. These commands are invoked using thesubprocessmodule with argument lists (shell=False), which correctly avoids shell execution and prevents command injection vulnerabilities.\n- [INDIRECT_PROMPT_INJECTION]: The skill processes content from arbitrary external URLs, creating a surface for indirect prompt injection.\n - Ingestion points: The script fetches video metadata, such as titles and descriptions, from external websites via
yt-dlpinscripts/download_video.py.\n - Boundary markers: There are no explicit instructions or delimiters in the documentation to prevent the AI agent from potentially following instructions embedded within the downloaded metadata if it is instructed to read those files later.\n
- Capability inventory: The skill has the ability to write files to the local system and execute subprocesses.\n
- Sanitization: The script implements a
sanitize_filenamefunction to ensure that potentially malicious metadata does not lead to directory traversal or illegal file creation.\n- [EXTERNAL_DOWNLOADS]: The skill instructions inSKILL.mdguide the user to install theyt-dlppackage from PyPI.yt-dlpis a well-known and widely used open-source tool for video downloading.
Audit Metadata