connector-twilio

Fail

Audited by Gen Agent Trust Hub on Sep 7, 2026

Risk Level: CRITICALEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONDATA_EXFILTRATION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill requires the installation of the twilio-client package via the Mops package manager. Although an automated scanner flagged the registry URL as suspicious, it is the official repository for the Motoko ecosystem.
  • [COMMAND_EXECUTION]: The instructions include command-line operations for adding dependencies to the project environment.
  • [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied phone numbers and message content. It correctly identifies the attack surface and provides instructions for normalizing and validating this data to mitigate injection risks.
  • [DATA_EXPOSURE_EXFILTRATION]: The skill manages sensitive Twilio credentials but incorporates best practices like admin-gated setters and non-retrievable storage to prevent unauthorized access.
  • [SAFE]: The documentation demonstrates a high degree of security awareness by warning against common pitfalls such as outcall replication and anonymous ownership claims.
Recommendations
  • CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
  • Contains 1 malicious URL(s) - DO NOT USE
Audit Metadata
Risk Level
CRITICAL
Analyzed
Sep 7, 2026, 06:11 AM
Security Audit — agent-trust-hub — connector-twilio