speech-to-text
Pass
Audited by Gen Agent Trust Hub on Jun 14, 2026
Risk Level: SAFE
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill recommends installing the
belt-sh/clipackage and references installation documentation from the officialinference-shGitHub repository. These resources are provided by the vendor and are necessary for the skill's intended functionality. - [PROMPT_INJECTION]: Ingestion points for untrusted data include the
audio_urlandvideo_urlparameters used inSKILL.md. While transcribed content from these sources could theoretically contain instructions, the skill's restricted toolset (limited to thebeltCLI) and the lack of complex dynamic execution patterns minimize the potential impact of indirect prompt injection.
Audit Metadata