ai-audio-processingAI Audio Processing Studio

Security checks across malware telemetry and agentic risk

Overview

This is a documentation-only audio-processing skill whose sensitive audio features are disclosed and fit its stated purpose.

Installers should treat this as a broad audio-production assistant. Use it only on recordings and voice samples you are authorized to process, review transcripts and generated audio before sharing, and confirm any RSS or publishing output manually.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The skill advertises privacy-sensitive capabilities including transcription, speaker diarization, voice cloning, and RSS publishing without any warnings, consent guidance, or handling expectations for personal data. In an audio-processing context, this increases the chance of unauthorized recording analysis, biometric voice misuse, and accidental publication of sensitive content.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal