twitter-automation
Pass
Audited by Gen Agent Trust Hub on Jul 24, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill utilizes the Bash tool to run the
infshCLI. The execution environment is restricted via theallowed-toolsfrontmatter to only permit commands starting withinfsh, which implements the principle of least privilege and prevents arbitrary command execution.\n- [EXTERNAL_DOWNLOADS]: The documentation references external installation vianpx skills addfor theinference-shorganization. These resources are from the official provider of the platform tools being used and are necessary for the skill's operation.\n- [DATA_EXFILTRATION]: No unauthorized data exfiltration patterns were detected. The skill uses the officialinfsh loginflow for credential management and interacts only with the intended service endpoints (Twitter/X API via the CLI).
Audit Metadata