read-aloud
Pass
Audited by Gen Agent Trust Hub on May 5, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill downloads text-to-speech models (~335MB) from a public GitHub repository (
github.com/nazdridoy/kokoro-tts) during its first execution. - [COMMAND_EXECUTION]: The skill uses
subprocess.runandsubprocess.Popeninscripts/read_aloud.pyto install thekokoro-ttstool viauvand to execute the speech synthesis engine. - [COMMAND_EXECUTION]: The
SKILL.mdfile contains dynamic context injection markers (!command) used to perform benign environment checks, such as verifying ifuvor the voice models are installed, to provide status information to the agent.
Audit Metadata