video-downloader

Pass

Audited by Gen Agent Trust Hub on Sep 14, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTIONNO_CODE
Full Analysis
  • [INDIRECT_PROMPT_INJECTION]: The skill is designed to download and archive content from external video platforms such as YouTube. This introduces a surface for indirect prompt injection, as malicious instructions could be placed in video titles, descriptions, or transcripts that the agent may process.
  • Ingestion points: External video platforms (SKILL.md).
  • Boundary markers: None identified.
  • Capability inventory: The skill description mentions downloading, viewing, and archival, implying network and file system access.
  • Sanitization: None identified.
  • [NO_CODE]: This skill file contains only descriptive metadata and instructions for manual installation. It does not include any scripts, automated installation commands, or executable code that runs within the agent's context.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 14, 2026, 05:59 PM
Security Audit — agent-trust-hub — video-downloader