elevenlabs-music
Pass
Audited by Gen Agent Trust Hub on Jul 16, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
- [SAFE]: No malicious behavior, obfuscation, or persistence mechanisms were detected in the skill instructions or scripts.
- [EXTERNAL_DOWNLOADS]: The skill references installation instructions from a GitHub repository associated with the inference.sh service. This is a neutral finding as it provides standard documentation for the service.
- [COMMAND_EXECUTION]: The skill uses the belt CLI tool to perform its primary function. The execution environment is appropriately limited by the allowed-tools configuration.
- [PROMPT_INJECTION]: The skill takes a text prompt as input for music generation. While this represents a surface for indirect prompt injection, it is the intended primary use case and the skill does not possess high-privilege capabilities that could be abused through this vector.
Audit Metadata