Security audit
Openai Whisper Andy27725
Security checks for vulnerabilities and agentic risk
Overview
This skill is a straightforward local Whisper transcription helper with no evidence of hidden or unrelated behavior.
Install this if you are comfortable with Homebrew installing openai-whisper and its dependencies. Expect model files to be downloaded and cached locally on first use, and avoid transcribing sensitive audio unless you are comfortable processing it with the locally installed Whisper tool.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
