verysmallwoods-video
Pass
Audited by Gen Agent Trust Hub on Sep 24, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADSINDIRECT_PROMPT_INJECTION
Full Analysis
- [COMMAND_EXECUTION]: The
srt_helper.pyscript utilizessubprocess.runto invokeffmpegfor audio processing and pause insertion. This is implemented using a list-based argument structure, which is the recommended safe practice to prevent shell injection vulnerabilities. - [EXTERNAL_DOWNLOADS]: The shell scripts
listenhub-tts.shandlistenhub-speakers.shdownload audio files, subtitle data, and voice lists from the ListenHub API (api.marswave.ai). The skill also connects to the Groq and OpenAI APIs for transcription services. These external references are appropriate for the skill's purpose and target established service endpoints. - [INDIRECT_PROMPT_INJECTION]: The skill provides a subtitle correction mechanism that interpolates user-supplied text (transcribed captions) into a prompt for an LLM. While this is an indirect injection surface, it is mitigated by explicit system instructions that constrain the LLM to only return a specific JSON format and strictly correct text without following embedded commands.
Audit Metadata