sonoscli
Pass
Audited by Gen Agent Trust Hub on Mar 10, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill installs the
sonosutility from a third-party GitHub repository (github.com/steipete/sonoscli) using the Go module system. - [COMMAND_EXECUTION]: The skill executes the
sonosbinary to perform discovery and control operations on local network hardware. - [PROMPT_INJECTION]: The skill processes untrusted metadata from local network devices (e.g., speaker names, track titles, and favorites), which presents a surface for indirect prompt injection. Ingestion points: Data retrieved via
sonos statusandsonos favorites list. Boundary markers: Not present. Capability inventory: Execution of thesonosCLI tool. Sanitization: Not explicitly implemented.
Audit Metadata