connector-twilio
Fail
Audited by Gen Agent Trust Hub on Sep 7, 2026
Risk Level: CRITICALEXTERNAL_DOWNLOADSCOMMAND_EXECUTIONINDIRECT_PROMPT_INJECTIONDATA_EXFILTRATION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill requires the installation of the twilio-client package via the Mops package manager. Although an automated scanner flagged the registry URL as suspicious, it is the official repository for the Motoko ecosystem.
- [COMMAND_EXECUTION]: The instructions include command-line operations for adding dependencies to the project environment.
- [INDIRECT_PROMPT_INJECTION]: The skill processes user-supplied phone numbers and message content. It correctly identifies the attack surface and provides instructions for normalizing and validating this data to mitigate injection risks.
- [DATA_EXPOSURE_EXFILTRATION]: The skill manages sensitive Twilio credentials but incorporates best practices like admin-gated setters and non-retrievable storage to prevent unauthorized access.
- [SAFE]: The documentation demonstrates a high degree of security awareness by warning against common pitfalls such as outcall replication and anonymous ownership claims.
Recommendations
- CRITICAL: 1 file(s) identified as malware by FileRep - DO NOT USE
- Contains 1 malicious URL(s) - DO NOT USE
Audit Metadata