sonos
Pass
Audited by Gen Agent Trust Hub on Sep 16, 2026
Risk Level: SAFEINDIRECT_PROMPT_INJECTION
Full Analysis
- [SAFE]: Analysis of the instructions reveals no malicious intent, obfuscation, or unauthorized network operations.
- [INDIRECT_PROMPT_INJECTION]: The skill possesses a vulnerability surface for indirect prompt injection as it processes external content like YouTube URLs and music search queries. Ingestion points: User-provided queries and YouTube URLs (SKILL.md). Boundary markers: None specified. Capability inventory: Shell command execution via local scripts (SKILL.md). Sanitization: Not mentioned.
Audit Metadata