streaming-patterns
Pass
Audited by Gen Agent Trust Hub on Sep 20, 2026
Risk Level: SAFECOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The skill includes code patterns that execute external system commands using the
subprocessmodule. - In
SKILL.md, theMultiStreamerclass usessubprocess.Popento runffmpeg. The command arguments are constructed by interpolating variables such asinput_source,video_bitrate, and destination URLs derived fromStreamDestinationobjects. - While the use of a list for arguments is a safer practice than shell strings, the lack of explicit input validation in the provided pattern represents a potential surface for command injection if populated with untrusted data.
- [INDIRECT_PROMPT_INJECTION]: The skill provides patterns for processing external, untrusted data which could influence agent behavior.
- Ingestion points: The
StreamBotclass inSKILL.mdimplementsevent_messageandhandle_commandsusing thetwitchiolibrary, which ingests raw chat messages from Twitch users. - Boundary markers: The provided pattern does not include specific delimiters or instructions to ignore potential commands embedded within the chat text beyond the defined command prefix.
- Capability inventory: The skill includes capabilities for network operations (Twitch/YouTube APIs), file streaming (FFmpeg), and software control (OBS WebSocket).
- Sanitization: There is no explicit sanitization or filtering logic shown for the incoming chat messages before they are processed by the command handler.
Audit Metadata