to-video

Pass

Audited by Gen Agent Trust Hub on Aug 14, 2026

Risk Level: SAFEPROMPT_INJECTIONNO_CODE
Full Analysis
  • [PROMPT_INJECTION]: The skill processes several project artifacts (BEATS.md, NARRATION.md, SCENES.md, and STORYBOARD.md) and treats them as authoritative data (project truth) when delegating tasks to external tools. This creates an indirect prompt injection surface where malicious instructions embedded in these artifacts could potentially influence the behavior of downstream components.
  • Ingestion points: Reads data from BEATS.md, NARRATION.md, SCENES.md, and STORYBOARD.md in SKILL.md.
  • Boundary markers: No explicit delimiters or instructions to ignore embedded commands are present in the handoff instructions.
  • Capability inventory: The skill interacts with external tools and routes including /hyperframes, /listenhub-tts, and /media-use.
  • Sanitization: No sanitization or validation logic is defined for the content of the processed files.
  • [NO_CODE]: The skill consists entirely of markdown instructions and does not include any executable scripts or binary files.
Audit Metadata
Risk Level
SAFE
Analyzed
Aug 14, 2026, 08:44 AM
Security Audit — agent-trust-hub — to-video