elevenlabs-dialogue
Warn
Audited by Socket on Mar 18, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The core capability matches the stated purpose, but the skill depends on a vendor CLI installed via remote-script flow, forwards authenticated use through that CLI, routes audio generation through inference.sh rather than directly documented ElevenLabs APIs, and encourages transitive skill installation. This looks more like a hosted gateway wrapper than a direct ElevenLabs integration; risk is medium rather than clearly malicious.
Confidence: 84%Severity: 63%
Audit Metadata