elevenlabs-stt

Pass

Audited by Gen Agent Trust Hub on Sep 17, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill provides a link to installation instructions hosted on the vendor's official GitHub repository (inference-sh/skills) for the required CLI tool.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted external audio and video data for transcription, creating a surface for indirect prompt injection.
  • Ingestion points: Audio and video URLs provided in the input JSON.
  • Boundary markers: Absent for the ingested content.
  • Capability inventory: Shell command execution via the belt CLI.
  • Sanitization: No sanitization of transcribed content is performed.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 17, 2026, 04:13 PM
Security Audit — agent-trust-hub — elevenlabs-stt