elevenlabs-stt
Pass
Audited by Gen Agent Trust Hub on Sep 17, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill provides a link to installation instructions hosted on the vendor's official GitHub repository (inference-sh/skills) for the required CLI tool.
- [INDIRECT_PROMPT_INJECTION]: The skill processes untrusted external audio and video data for transcription, creating a surface for indirect prompt injection.
- Ingestion points: Audio and video URLs provided in the input JSON.
- Boundary markers: Absent for the ingested content.
- Capability inventory: Shell command execution via the belt CLI.
- Sanitization: No sanitization of transcribed content is performed.
Audit Metadata