skills/letta-ai/skills/spotify-player/Gen Agent Trust Hub

spotify-player

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFE
Full Analysis
  • [COMMAND_EXECUTION]: The skill documents standard CLI commands for Spotify playback and management using spogo and spotify_player tools.
  • [DATA_EXPOSURE]: Notes the default configuration directory at ~/.config/spotify-player, which is standard behavior for these applications.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user-provided search queries for tracks, presenting a minor surface for indirect injection via track metadata, which is inherent to media playback functionality.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 07:45 PM
Security Audit — agent-trust-hub — spotify-player