skills/notabanker/codexclawd/sonoscli/Gen Agent Trust Hub

sonoscli

Pass

Audited by Gen Agent Trust Hub on Mar 10, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs the sonos utility from a third-party GitHub repository (github.com/steipete/sonoscli) using the Go module system.
  • [COMMAND_EXECUTION]: The skill executes the sonos binary to perform discovery and control operations on local network hardware.
  • [PROMPT_INJECTION]: The skill processes untrusted metadata from local network devices (e.g., speaker names, track titles, and favorites), which presents a surface for indirect prompt injection. Ingestion points: Data retrieved via sonos status and sonos favorites list. Boundary markers: Not present. Capability inventory: Execution of the sonos CLI tool. Sanitization: Not explicitly implemented.
Audit Metadata
Risk Level
SAFE
Analyzed
Mar 10, 2026, 01:27 AM
Security Audit — agent-trust-hub — sonoscli