acestep-lyrics-transcription

Security checks across malware telemetry and agentic risk

Overview

The skill has a legitimate transcription purpose, but it should be reviewed because crafted file paths can reach unsafe inline Python execution and API keys are stored and echoed insecurely.

Install only if you are comfortable sending audio to OpenAI or ElevenLabs and storing a revocable API key locally. Avoid using this skill on untrusted audio filenames or custom output paths until the script escapes paths safely, and rotate any key that may have appeared in logs or shell history.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
90% confidence
Finding
The skill instructs the user to provide a raw API key and store it via a shell command, but it does not meaningfully warn that the key is a sensitive secret, may be persisted in a local config file, may appear in shell history, and should only be entered through trusted channels. Because the skill also uses external providers, compromise of the key could enable unauthorized API usage and billing abuse.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal