video-editing
Pass
Audited by Gen Agent Trust Hub on Mar 24, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTIONPROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: Utilizes FFmpeg for video manipulation tasks, including clipping, concatenation, and audio normalization through various shell command examples and batch scripts.
- [EXTERNAL_DOWNLOADS]: Features integrations with ElevenLabs and fal.ai for generating voiceovers and visual assets via API calls, representing interactions with well-known technology services.
- [REMOTE_CODE_EXECUTION]: Recommends the use of the Remotion framework to render video compositions programmatically, which involves executing project-local TypeScript and React code via
npx. - [PROMPT_INJECTION]: Identifies a potential surface for indirect prompt injection where the agent is instructed to analyze user-supplied video transcripts to structure edits and generate FFmpeg commands.
- Ingestion points: Transcription and structure planning phase (Layer 2).
- Boundary markers: None present in the suggested prompt templates.
- Capability inventory: Shell command execution (FFmpeg) and network API calls.
- Sanitization: Not specified in the provided instructions.
Audit Metadata