skills/steipete/agent-scripts/sonos/Gen Agent Trust Hub

sonos

Pass

Audited by Gen Agent Trust Hub on Sep 16, 2026

Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
  • [SAFE]: Analysis of the instructions reveals no malicious intent, obfuscation, or unauthorized network operations.
  • [INDIRECT_PROMPT_INJECTION]: The skill possesses a vulnerability surface for indirect prompt injection as it processes external content like YouTube URLs and music search queries. Ingestion points: User-provided queries and YouTube URLs (SKILL.md). Boundary markers: None specified. Capability inventory: Shell command execution via local scripts (SKILL.md). Sanitization: Not mentioned.
Audit Metadata
Risk Level
SAFE
Analyzed
Sep 16, 2026, 11:27 PM
Security Audit — agent-trust-hub — sonos