talking-head-production

Warn

Audited by Gen Agent Trust Hub on Aug 8, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONPROMPT_INJECTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill recommends the installation of an external CLI package 'belt-sh/cli' through 'npx' and provides a reference to external installation instructions hosted on 'raw.githubusercontent.com'.\n- [COMMAND_EXECUTION]: The skill utilizes the 'belt' CLI tool for network-based authentication ('belt login') and for executing remote video processing tasks ('belt app run') on a third-party service provider.\n- [PROMPT_INJECTION]: The skill is susceptible to indirect prompt injection through its ingestion of external media files. 1. Ingestion points: 'image' and 'audio' parameter URLs in tool execution commands. 2. Boundary markers: None present. 3. Capability inventory: The skill utilizes the 'Bash(belt *)' tool for remote operations. 4. Sanitization: No input validation or content filtering is implemented for external resources.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Aug 8, 2026, 08:30 PM
Security Audit — agent-trust-hub — talking-head-production