opentwitter-mcp-server

Warn

Audited by Socket on May 17, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s capabilities broadly match its stated purpose, and the uv-based execution path is consistent with normal Python MCP tooling. The main risk is data-flow and trust concentration: all Twitter access and monitoring are mediated by 6551.io, and the required token is for that third-party service rather than official X/Twitter APIs. This is not clearly malicious, but it requires trusting an external provider with query activity, monitoring data, and authentication.

Confidence: 86%Severity: 58%
Audit Metadata
Analyzed At
May 17, 2026, 03:11 AM
Package URL
pkg:socket/skills-sh/Aradotso%2Fmcp-skills%2Fopentwitter-mcp-server%2F@6e7867f76d799ef2eca6563fe410dcd114858a63
Security Audit — socket — opentwitter-mcp-server