Caveat verdict
skywork-music-maker
A music generation skill using the Mureka API with a declared MUREKA_API_KEY; all network calls go to api.mureka.ai for the stated music generation purpose.
⚠ Flagged for review — coarse, uncorroborated signal, not a confirmed exploit. Review the config yourself before installing.
Automated static analysis — not a human review. Caveat flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
Findings (3)
Possible hardcoded credential
README.md · code · API_KEY="your_api_key
Instruction-prose smuggling shape detected: collects a sensitive target ("credentials") and emits it outward ("Upload"). Phrased as prose with no trigger tokens — a semantic prompt-injection / data-exfil pattern the syntactic scanners can't see. Final tier capped at Caution; review the instructions before installing.
SKILL.md · - **API endpoint**: All API calls are made exclusively to `https://api.mureka.ai` (official Mureka endpoint by Skywork AI) - **Data transmitted**: Lyrics text,
Python os.getenv — reads environment variable
scripts/mureka.py · prose · downgraded · os.getenv(
Permissions & capabilities
Requires 1 environment variable. (1 sensitive: MUREKA_API_KEY). Requires 1 system binary.
Is this flag fair?
Thanks — recorded.