elevenlabs-music

Pass

Audited by Gen Agent Trust Hub on Jul 16, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [SAFE]: No malicious behavior, obfuscation, or persistence mechanisms were detected in the skill instructions or scripts.
  • [EXTERNAL_DOWNLOADS]: The skill references installation instructions from a GitHub repository associated with the inference.sh service. This is a neutral finding as it provides standard documentation for the service.
  • [COMMAND_EXECUTION]: The skill uses the belt CLI tool to perform its primary function. The execution environment is appropriately limited by the allowed-tools configuration.
  • [PROMPT_INJECTION]: The skill takes a text prompt as input for music generation. While this represents a surface for indirect prompt injection, it is the intended primary use case and the skill does not possess high-privilege capabilities that could be abused through this vector.
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 16, 2026, 10:49 PM
Security Audit — agent-trust-hub — elevenlabs-music