twitter-automation

Pass

Audited by Gen Agent Trust Hub on Jul 24, 2026

Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
  • [COMMAND_EXECUTION]: The skill utilizes the Bash tool to run the infsh CLI. The execution environment is restricted via the allowed-tools frontmatter to only permit commands starting with infsh, which implements the principle of least privilege and prevents arbitrary command execution.\n- [EXTERNAL_DOWNLOADS]: The documentation references external installation via npx skills add for the inference-sh organization. These resources are from the official provider of the platform tools being used and are necessary for the skill's operation.\n- [DATA_EXFILTRATION]: No unauthorized data exfiltration patterns were detected. The skill uses the official infsh login flow for credential management and interacts only with the intended service endpoints (Twitter/X API via the CLI).
Audit Metadata
Risk Level
SAFE
Analyzed
Jul 24, 2026, 05:06 AM
Security Audit — agent-trust-hub — twitter-automation