sonoscli

Pass

Audited by Gen Agent Trust Hub on Jun 22, 2026

Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill installs the 'sonos' binary from a public GitHub repository (github.com/steipete/sonoscli) using the Go package manager during the installation phase.
  • [COMMAND_EXECUTION]: The skill is designed to execute shell commands using the 'sonos' CLI utility to interact with devices on the local network.
  • [SAFE]: No malicious patterns such as obfuscation, data exfiltration, or unauthorized privilege escalation were detected. The use of environment variables for Spotify credentials follows standard security practices.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 22, 2026, 07:21 PM
Security Audit — agent-trust-hub — sonoscli