youtube-downloader
Pass
Audited by Gen Agent Trust Hub on Sep 25, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The script checks for the presence of the yt-dlp tool and attempts to install it via pip from the Python Package Index if it is missing. This involves downloading and executing external code at runtime, which is standard for this utility but constitutes a package management event.
- [COMMAND_EXECUTION]: The skill uses the subprocess module to invoke the yt-dlp command-line tool for fetching metadata and downloading content. The implementation uses list-based arguments, which is a best practice that mitigates shell injection risks.
- [INDIRECT_PROMPT_INJECTION]: The skill processes user-provided URLs which could potentially contain malicious instructions intended for the agent or the underlying downloader.
- Ingestion points: The url and output_path parameters are accepted as user-provided arguments in scripts/download_video.py.
- Boundary markers: No explicit delimiters or specific instructions to ignore embedded content are used in the command preparation.
- Capability inventory: The skill can perform network requests and write files to the local file system through its use of the yt-dlp tool.
- Sanitization: Input for quality and format parameters is validated against pre-defined choices, and the use of argument lists in subprocess calls prevents basic command injection via the URL or path.
Audit Metadata